#bugbountytips before:
ngnix + tomcat ? try ..;/manager
private xss payloads
sqli waf bypass
#bugbountytip now:
check rebots.txt
302 ? fuzz for hidden directories
login panel? try admin:admin