REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Gratipay'
disclosed a bug submitted by
b'shwetabh'
b'Missing Certificate Authority Authorization rule'
09 Sep 2017
b'Gratipay'
disclosed a bug submitted by
b'nihad'
b'Show hide privacy giving receiving on my website '
09 Sep 2017
b'Gratipay'
disclosed a bug submitted by
b'malek'
b'Information Disclosure on inside.gratipay.com'
09 Sep 2017
b'Gratipay'
disclosed a bug submitted by
b'nihaddl'
b'400 Bad Request [Use a third-party provider to sign in or create an account on Gratipay]'
09 Sep 2017
b'Gratipay'
disclosed a bug submitted by
b'nihaddl'
b'clickjacking on https://gratipay.com/on/npm/[text]'
09 Sep 2017
b'Coinbase'
disclosed a bug submitted by
b'whysoleet'
b'New Device Confirmation Bug'
08 Sep 2017
b'GitLab'
disclosed a bug submitted by
b'cdl'
b'Impersonation attack via Broken Link in Resellers Page'
08 Sep 2017
b'Shopify'
disclosed a bug submitted by
b'azizs3curity'
b'Stored XSS Deleting Menu Links in the Shopify Admin'
08 Sep 2017
b'WordPress'
disclosed a bug submitted by
b'mdisrail'
b'Clickjacking mercantile.wordpress.org'
08 Sep 2017
b'Maximum'
disclosed a bug submitted by
b'aliashber1'
b'[Cross Domain Referrer Leakage] Password Reset Token Leaking to Third party Sites.'
07 Sep 2017
b'ExpressionEngine'
disclosed a bug submitted by
b'freetom'
b'Potential code injection in fun delete_directory'
07 Sep 2017
b'ExpressionEngine'
disclosed a bug submitted by
b'freetom'
b'Image lib - unescaped file path'
07 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'ramakanthk35'
b'Email Spoofing - SPF record set to Neutral'
06 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'ramakanthk35'
b'Email Spoofing - SPF record set to Neutral'
06 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'tolo7010'
b'calc.gsa.gov is vulnerable to CSV/Excel Command Injection'
06 Sep 2017
b'GitLab'
disclosed a bug submitted by
b'b3nac'
b'Gitlab is vulnerable to impersonation attacks due to broken links'
06 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'jackds'
b'Subdomain take-over of {REDACTED}.18f.gov'
06 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'edio'
b'{REDACTED}.data.gov subdomain takeover.'
06 Sep 2017
b'Unikrn'
disclosed a bug submitted by
b'geekboy'
b'Flash CSRF: Update Ad Frequency %: [cp-ng.pinion.gg]'
06 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'shivanagakrishna'
b'Logic issue in email change process'
06 Sep 2017
1
...
541
542
543
544
545
...
765
BY DENIS WERNER - @NOBBD -
IMPRESSUM