REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
65
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Shopify'
disclosed a bug submitted by
b'bored-engineer'
b'XSS on any Shopify shop via abuse of the HTML5 structured clone algorithm in postMessage listener on "/:id/digital_wallets/dialog"'
30 May 2017
b'PHP (IBB)'
disclosed a bug submitted by
b'rc0r'
b'Heap overflow caused by type confusion vulnerability in merge_param()'
30 May 2017
b'PHP (IBB)'
disclosed a bug submitted by
b'rc0r'
b'Buffer overflow in HTTP parse_hostinfo(), parse_userinfo() and parse_scheme()'
30 May 2017
b'shopify-scripts'
disclosed a bug submitted by
b'avisaven'
b'Heap Overflow in fiber_switch triggered from Fiber.transfer'
30 May 2017
b'shopify-scripts'
disclosed a bug submitted by
b'avisaven'
b'OP_SCALL in LHS of a OP_ASGN resulting in arbitrary memory write'
30 May 2017
b'Teradici'
disclosed a bug submitted by
b'imxx'
b'Weak Password Policy on techsupport.teradici.com'
29 May 2017
b'Teradici'
disclosed a bug submitted by
b'inlovewithaghost'
b'Weak password requirement on techsupport.teradici.com '
29 May 2017
b'Shopify'
disclosed a bug submitted by
b'zombiehelp54'
b'Reflected XSS in <any>.myshopify.com through theme preview'
29 May 2017
b'Perl (IBB)'
disclosed a bug submitted by
b'geeknik'
b'read outside of buffer (heap buffer overflow) in S_regmatch - regexec.c:6057'
28 May 2017
b'Perl (IBB)'
disclosed a bug submitted by
b'geeknik'
b'heap-buffer-overflow (READ of size 11) in Perl 5.25.x'
28 May 2017
b'PHP (IBB)'
disclosed a bug submitted by
b'hanno'
b'Out of bounds memory read in unserialize()'
28 May 2017
b'Cuvva'
disclosed a bug submitted by
b'leet-boy'
b'Missing rate limit on https://underwriter.partner.cuvva.com/login/verify'
27 May 2017
b'Cuvva'
disclosed a bug submitted by
b'streaak'
b'Missing Rate limiting on https://underwriter.partner.cuvva.com/login'
27 May 2017
b'Cuvva'
disclosed a bug submitted by
b'bhumish'
b'Verification code for Underwriter dashboard can be brute-forced'
27 May 2017
b'BrickFTP'
disclosed a bug submitted by
b'xanderi'
b'CSRF @ configuration '
27 May 2017
b'Maximum'
disclosed a bug submitted by
b'jorik'
b"Possible to view and takeover other user's education and courses @ mijn.werkenbijdefensie.nl"
27 May 2017
b'Maximum'
disclosed a bug submitted by
b'jorik'
b'Possible to unsubscribe from activities using CSRF @ mijn.werkenbijdefensie.nl'
27 May 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'a0xnirudh'
b'Reflected File Download in community.ubnt.com/restapi/'
27 May 2017
b'Twitter'
disclosed a bug submitted by
b'rbcafe'
b'[??????????.gnip.com] .htpasswd disclosure'
26 May 2017
b'Uber'
disclosed a bug submitted by
b'hurthearts'
b'Session not expired When logout [partners.uber.com]'
26 May 2017
1
...
554
555
556
557
558
...
746
BY DENIS WERNER - @NOBBD -
IMPRESSUM