REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
65
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'IBM'
disclosed a bug submitted by
b'suryahss'
b'Insecure Direct Object Reference Protection bypass by changing HTTP method in IBM Your Learning endpoint. '
01 May 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'bart'
b'Assertion failed in node::http2::Http2Session::~Http2Session() leads to HTTP/2 server crash'
29 Apr 2024
b'HackerOne'
disclosed a bug submitted by
b'xklepxn'
b'Attachment disclosure via summary report '
29 Apr 2024
b'Hyperledger'
disclosed a bug submitted by
b'another_dude'
b'Code exec on Github runner via Pull request name'
28 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'parantheses'
b'CVE-2024-25128: Apache Airflow: Authentication Bypass when Legacy OpenID(2.0) is in use as AUTH_TYPE'
28 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'scyoon'
b'CVE-2024-27351: Potential regular expression denial-of-service in django.utils.text.Truncator.words()'
28 Apr 2024
b'PlayStation'
disclosed a bug submitted by
b'theflow0'
b'Remote vulnerabilities in spp'
25 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'bart'
b'Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames'
24 Apr 2024
b'IBM'
disclosed a bug submitted by
b'hassan_sheet'
b'RXSS in hidden parameter'
23 Apr 2024
b'Mozilla'
disclosed a bug submitted by
b'griffinf'
b'Jira Credential Disclosure within Mozilla Slack'
23 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'w0x42'
b'CVE-2024-2398: HTTP/2 push headers memory-leak'
22 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'bart'
b'Denial of Service caused by HTTP/2 CONTINUATION Flood'
22 Apr 2024
b'Adobe'
disclosed a bug submitted by
b'renzi'
b"Adobe Experience Manager 'Childlist selector' - Cross-Site Scripting on cbconnection-stage.adobe.com "
22 Apr 2024
b'Sheer'
disclosed a bug submitted by
b'tuannq_gg'
b'Cleartext Transmission of password via Email'
22 Apr 2024
b'Hyperledger'
disclosed a bug submitted by
b'adnanthekhan'
b'Docker Secret Disclosure via GitHub Actions Cache Poisoning'
20 Apr 2024
b'Revive Adserver'
disclosed a bug submitted by
b'karan'
b'Login page password-guessing attack'
19 Apr 2024
b'SideFX'
disclosed a bug submitted by
b'itriedallthenamess'
b'Stored XSS in messages'
17 Apr 2024
b'PortSwigger Web Security'
disclosed a bug submitted by
b'john_cai11111111'
b'Incorrect logic when buy one more license which may lead to extend the expire date of existing license'
16 Apr 2024
b'GitHub'
disclosed a bug submitted by
b'sudi'
b'Self XSS in Tag name pattern field /<username>/<reponame>/settings/tag_protection/new '
15 Apr 2024
b'inDrive'
disclosed a bug submitted by
b'maxdha'
b'#1 XSS on watchdocs.indriverapp.com'
11 Apr 2024
1
...
53
54
55
56
57
...
747
BY DENIS WERNER - @NOBBD -
IMPRESSUM