Google Bug Hunting

09:31 Posted by Ali Hassan Ghori ,
Today, i am sharing my Google findings that gives me a great experience.

First,
Xss in html5rocks.com Google acquired Site.

PoC: http://www.html5rocks.com/en/tutorials/#




Second,
Bug in http://rightsflow.com/




I gives a Username and Password, Username field is all correct but in Password field, Password was showing and not marked as Password type.



Password field was defaults set as Text type.