AI Banned users not actually banned Arbitrary pipeline execution CI/CD scheduling SAML (Re)DoS Privilege escalation Authn bypass Pages domain hijack OAuth / OIDC Codeowners bypass Package registry Improper token revocation Merge request bypass HTML injection Emojis User impersonation CI/CD variable exposure ../ Sensitive data exposure GraphQL CSRF / SSRF Maven dependency proxy Leaky role permissions AI Banned users not actually banned Arbitrary pipeline execution CI/CD scheduling SAML (Re)DoS Privilege escalation Authn bypass Pages domain hijack OAuth / OIDC Codeowners bypass Package registry Improper token revocation Merge request bypass HTML injection Emojis User impersonation CI/CD variable exposure ../ Sensitive data exposure GraphQL CSRF / SSRF Maven dependency proxy Leaky role permissions
(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.
AI
Banned users not actually banned
Arbitrary pipeline execution
CI/CD scheduling
SAML
(Re)DoS
Privilege escalation
Authn bypass
Pages domain hijack
OAuth / OIDC
Codeowners bypass
Package registry
Improper token revocation
Merge request bypass
HTML injection
Emojis
User impersonation
CI/CD variable exposure
../
Sensitive data exposure
GraphQL
CSRF / SSRF
Maven dependency proxy
Leaky role permissions