REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Infogram'
disclosed a bug submitted by
b'mrreboot'
b'Server Side Request Forgery on JSON Feed'
06 Dec 2017
b'Monero'
disclosed a bug submitted by
b'aerodudrizzt'
b'Kovri: potential buffer over-read in garlic clove handling + I2NP message creation'
05 Dec 2017
b'Starbucks'
disclosed a bug submitted by
b'benoculars'
b'Multiple Subdomain takeovers via unclaimed instances'
04 Dec 2017
b'Infogram'
disclosed a bug submitted by
b'sp1d3rs'
b'Stored Cross-Site scripting in the infographics using Data Objects links'
04 Dec 2017
b'Infogram'
disclosed a bug submitted by
b'sp1d3rs'
b'Stored Cross-Site scripting in the infographics using links'
04 Dec 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'hacknroll'
b'Privilege Escalation with Session Hijacking Having a Non-privileged Valid User'
04 Dec 2017
b'Mail.Ru'
disclosed a bug submitted by
b'linkks'
b'Monitor'
04 Dec 2017
b'WordPress'
disclosed a bug submitted by
b'hackerwahab'
b'Content Spoofing @ https://irclogs.wordpress.org/'
04 Dec 2017
b'Tor'
disclosed a bug submitted by
b'qab'
b'XSS on about:tbupdate'
03 Dec 2017
b'HackerOne'
disclosed a bug submitted by
b'shailesh4594'
b'Invalid Host detection at https://hackerone.com/redirect'
03 Dec 2017
b'Instacart'
disclosed a bug submitted by
b'003random'
b'Get all instacart emails - missing rate limit on /accounts/register'
01 Dec 2017
b'Automattic'
disclosed a bug submitted by
b'ysx'
b'[public-api.wordpress.com] Stored XSS via Crafted Developer App Description'
01 Dec 2017
b'Automattic'
disclosed a bug submitted by
b'ysx'
b'[Simplenote for Windows] Client RCE via External JavaScript Inclusion leveraging Electron'
01 Dec 2017
b'Automattic'
disclosed a bug submitted by
b'jouko'
b'Lazy Load stored XSS'
01 Dec 2017
b'Automattic'
disclosed a bug submitted by
b'edio'
b'Improper markup sanitization.'
01 Dec 2017
b'Mail.Ru'
disclosed a bug submitted by
b'whitesector'
b'Stored XSS using SVG on subdomain infra.mail.ru'
01 Dec 2017
b'Informatica'
disclosed a bug submitted by
b'0ways'
b'Unrestricted file upload - cloudacademy.informatica.com'
01 Dec 2017
b'Coursera'
disclosed a bug submitted by
b'c0rdis'
b'Stored XSS via transloadit.com and imageproxy'
30 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'kenziy'
b'Query parameter reordering causes redirect page to render unsafe URL'
30 Nov 2017
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'paresh_parmar'
b'stored xss in comments : driver exam '
30 Nov 2017
1
...
516
517
518
519
520
...
765
BY DENIS WERNER - @NOBBD -
IMPRESSUM