REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
51
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'lukasreschke'
b'Possible to enumerate valid files in password protected shares/files drop shares as well as spam folder with files'
21 Feb 2025
b'TikTok'
disclosed a bug submitted by
b'p_oria'
b'IDOR on ads.tiktok.com Allows Unauthorized Product Addition'
20 Feb 2025
b'Ruby'
disclosed a bug submitted by
b'l33thaxor'
b'Uncontrolled Resource Consumption when parsing maliciously crafted XML with REXML'
20 Feb 2025
b'MTN Group'
disclosed a bug submitted by
b'offensiveops'
b'Unauthenticated phpinfo()files could lead to ability file read at h2f54.n1.ips.mtn.co.ug [/dashboard/]'
20 Feb 2025
b'curl'
disclosed a bug submitted by
b'orcahack'
b'Format string vulnerability, curl_msnprintf() function '
20 Feb 2025
b'Autodesk'
disclosed a bug submitted by
b'tasin_zucced___'
b'IDOR Vulnerability Allowing Unauthorized Profile Picture Change'
19 Feb 2025
b'Autodesk'
disclosed a bug submitted by
b'eyax0'
b'Insecure Direct Object Reference (IDOR) Vulnerability in Autodesk User Profile'
19 Feb 2025
b'MTN Group'
disclosed a bug submitted by
b'offensiveops'
b'Cisco IOS XE instance at 41.208.24.174 vulnerable to CVE-2023-20198'
19 Feb 2025
b'Hemi VDP'
disclosed a bug submitted by
b'an_gr_y'
b'Linkedin Broken Link Hijacking on https://hemi.xyz/about'
13 Feb 2025
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'oxylis'
b'Applicant security exam Attachments/Documents accessible through an IDOR/BAC on the custom Apex controller on https://.mil '
12 Feb 2025
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'turbul3nce'
b'Improper Authentication Allows Making Appeals as Other Users'
12 Feb 2025
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'kolcyberdef'
b'Publicly Editable U.S. Air Force Google Spreadsheet Exposing Student Leave Data '
12 Feb 2025
b'Autodesk'
disclosed a bug submitted by
b'karimtantawy'
b'Wordpress users Disclosure'
12 Feb 2025
b'Basecamp'
disclosed a bug submitted by
b'victim_of_life'
b'Improper Cache Handling Allows Access to Post-Logout Pages'
10 Feb 2025
b'Top Echelon Software'
disclosed a bug submitted by
b'genz-1'
b'Clickjacking in main domain https://topechelon.com/'
10 Feb 2025
b'XVIDEOS'
disclosed a bug submitted by
b'mcblockchamp'
b'Unauthenticated API Access Exposing Premium Content and Financial Data'
09 Feb 2025
b'XVIDEOS'
disclosed a bug submitted by
b'mcblockchamp'
b' API Data Leakage Vulnerability Report - `xvcams.com`'
09 Feb 2025
b'RubyGems'
disclosed a bug submitted by
b'n_ob_o_dy'
b'Host Header Attac'
08 Feb 2025
b'curl'
disclosed a bug submitted by
b'7mkrooal'
b'("possible") UAF'
08 Feb 2025
1
2
3
...
721
BY DENIS WERNER - @NOBBD -
IMPRESSUM