Pages domain hijack CSRF / SSRF CI/CD variable exposure CI/CD scheduling Package registry AI Codeowners bypass ../ Arbitrary pipeline execution Leaky role permissions Improper token revocation Merge request bypass HTML injection OAuth / OIDC User impersonation SAML Emojis (Re)DoS Sensitive data exposure Maven dependency proxy Authn bypass Privilege escalation GraphQL Banned users not actually banned Pages domain hijack CSRF / SSRF CI/CD variable exposure CI/CD scheduling Package registry AI Codeowners bypass ../ Arbitrary pipeline execution Leaky role permissions Improper token revocation Merge request bypass HTML injection OAuth / OIDC User impersonation SAML Emojis (Re)DoS Sensitive data exposure Maven dependency proxy Authn bypass Privilege escalation GraphQL Banned users not actually banned
(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.
Pages domain hijack
CSRF / SSRF
CI/CD variable exposure
CI/CD scheduling
Package registry
AI
Codeowners bypass
../
Arbitrary pipeline execution
Leaky role permissions
Improper token revocation
Merge request bypass
HTML injection
OAuth / OIDC
User impersonation
SAML
Emojis
(Re)DoS
Sensitive data exposure
Maven dependency proxy
Authn bypass
Privilege escalation
GraphQL
Banned users not actually banned