← The brief
01 · The record
03 · The finder
Published finding · Bugcrowd
Infisical Vulnerability Disclosure Essentials A finding accepted against Infisical Shared Cloud US. Bugcrowd published no award figure for it.
Everything Bugcrowd published about this
- Programme
- Infisical Vulnerability Disclosure Essentials Not in our directory yet, so there is no grade or review page for it. The event is kept regardless.
- Platform handle
- infisical-vdp-ess
- Asset
- Infisical Shared Cloud US The specific asset the finding landed against, as the platform named it.
- Severity
- medium Bugcrowd rates P1–P5; this is that rating in HackerOne's words so the two feeds can sit in one table.
- Award
- Not published This does not mean nothing was paid. Both platforms let a programme accept a finding without publishing the figure, and most do.
- Found by
- Shoaib_18 Named because the finder allowed the platform to name them.
- State
- unresolved — accepted, not yet fixed
- Accepted
- 21 September 2026 4 days ago. This is the date the programme accepted the finding.
- First seen here
- 22 September 2026 When our sweep first read this entry. It says nothing about the finding, only about us.
- Platform reference
- 61e461e7-8e7d-45a8-99a8-a6cc1e1bdb3a
What else Shoaib_18 has published on Bugcrowd
2published findings
2programmes
0critical
not setpublished awards
- State of Maryland Vulnerability Disclosure Program medium · *.maryland.gov · 10 days ago —
Counted within Bugcrowd only. The same handle on another platform may or may not be the same person, and this page will not assume it is.
Where this came from. One row of a public platform feed, stored as published and never edited. We hold no report title, no write-up and no reproduction steps, because the feeds do not carry them and we do not go looking for them. A withheld name stays withheld; if a finder later asks the platform to un-name them, the next sweep un-names them here. Absence of an award figure is publication policy, not evidence a programme did not pay.