REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Twitter'
disclosed a bug submitted by
b'malcolmx'
b'Open Redirect'
19 Aug 2017
b'Snapchat'
disclosed a bug submitted by
b'preben_ve'
b'Open prod Jenkins instance'
19 Aug 2017
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'CSRF bypass on Submit Time sheet for Approval'
18 Aug 2017
b'concrete5'
disclosed a bug submitted by
b'bl4de'
b'Stored XSS vulnerability in RSS Feeds Description field'
18 Aug 2017
b'Legal Robot'
disclosed a bug submitted by
b'rehan'
b'Password reset form ignores email field'
18 Aug 2017
b'Weblate'
disclosed a bug submitted by
b'platinum1933'
b'Weak password policy'
18 Aug 2017
b'concrete5'
disclosed a bug submitted by
b'bl4de'
b'Stored XSS in Name field in User Groups/Group Details form'
17 Aug 2017
b'concrete5'
disclosed a bug submitted by
b'bl4de'
b"Stored XSS in Private Messages 'Reply' allows to execute malicious JavaScript against any user while replying to the message which contains payload"
17 Aug 2017
b'Mapbox'
disclosed a bug submitted by
b'sahilsaif'
b'Stored xss in editor '
17 Aug 2017
b'YouPorn'
disclosed a bug submitted by
b'nahamsec'
b'IDOR - Access to private video thumbnails even if video requires password authentication'
17 Aug 2017
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Project Manager can approve pending reports(Access control Issue)'
17 Aug 2017
b'Udemy'
disclosed a bug submitted by
b'kaushalag29'
b'Violation of secure design principle'
17 Aug 2017
b'Open-Xchange'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Resend invitation to members by Read only user(Privilege Escalation)'
17 Aug 2017
b'Open-Xchange'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Unauthorized access to attachments details of Private Calendar appointments (Access control issue)'
17 Aug 2017
b'Open-Xchange'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Critical : View/Edit access to private appointments of calendar folder by read only user (Vertical privilege escalation)'
17 Aug 2017
b'Udemy'
disclosed a bug submitted by
b'hi_man'
b'CSRF Token'
17 Aug 2017
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'netfuzzer'
b'Dom based xss affecting all pages from https://www.grab.com/.'
17 Aug 2017
b'Unikrn'
disclosed a bug submitted by
b'yaworsk'
b'Urgent: Server side template injection via Smarty template allows for RCE'
17 Aug 2017
b'Weblate'
disclosed a bug submitted by
b'ashish_r_padelkar'
b'Csrf in watch-unwatch projects'
17 Aug 2017
b'Weblate'
disclosed a bug submitted by
b'blake12356'
b'Error Message When Changing Username'
17 Aug 2017
1
...
521
522
523
524
525
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM