REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Snapchat'
disclosed a bug submitted by
b'benoculars'
b'Subdomain Takeover of help.bitstripsforschools.com'
04 Oct 2017
b'Legal Robot'
disclosed a bug submitted by
b'saikiran-10097'
b'Allowance of Meta/Null characters'
04 Oct 2017
b'GitLab'
disclosed a bug submitted by
b'jobert'
b'Race condition in GitLab import, giving access to other people their imports due to filename collision'
03 Oct 2017
b'delight.im'
disclosed a bug submitted by
b'darkid'
b'Logout CSRF'
03 Oct 2017
b'delight.im'
disclosed a bug submitted by
b'darkid'
b'Add movie or series CSRF'
03 Oct 2017
b'HackerOne'
disclosed a bug submitted by
b'encrypt'
b'Lack of input sanitization in Marketo form leads to execution of HTML in lead emails'
03 Oct 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'jstjohn'
b'Unauthenticated Cross-Site Scripting in Web Management Console'
02 Oct 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'grampae'
b'XSS on Nanostation Loco M2 Airmax'
02 Oct 2017
b'Tor'
disclosed a bug submitted by
b'geeknik'
b'Stack overflow in UnbindFromTree (browser can be crashed remotely)'
02 Oct 2017
b'Automattic'
disclosed a bug submitted by
b'paresh_parmar'
b'xss filter bypass [polldaddy]'
01 Oct 2017
b'WakaTime'
disclosed a bug submitted by
b'saikiran-10097'
b'Validation of Password reset tokens'
01 Oct 2017
b'Gratipay'
disclosed a bug submitted by
b'arslan1337'
b'XSS found In Your Web'
01 Oct 2017
b'Gratipay'
disclosed a bug submitted by
b'atom'
b'protect against tabnabbing in statement'
01 Oct 2017
b'Twitter'
disclosed a bug submitted by
b'bobrov'
b'[dev.twitter.com] XSS and Open Redirect'
29 Sep 2017
b'Twitter'
disclosed a bug submitted by
b'hassham'
b'Sensitive Information Disclosure https://cards-dev.twitter.com'
29 Sep 2017
b'ExpressionEngine'
disclosed a bug submitted by
b'hogarth45'
b'Reflective XSS'
29 Sep 2017
b'Vimeo'
disclosed a bug submitted by
b'koenrh'
b'Disclosure of sensitive information through Google Cloud Storage bucket'
29 Sep 2017
b'Aspen'
disclosed a bug submitted by
b'rey_7'
b'Information leakage on django.aspen.io'
29 Sep 2017
b'Aspen'
disclosed a bug submitted by
b'yumi'
b'client_secret Token disclosure '
28 Sep 2017
b'Aspen'
disclosed a bug submitted by
b'saikiran-10099'
b'No Rate Limit (Leads to huge email flooding/email bombing)'
28 Sep 2017
1
...
535
536
537
538
539
...
765
BY DENIS WERNER - @NOBBD -
IMPRESSUM