REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'imtheking'
b'2FA BYPASS'
18 Sep 2023
b'Invision Power Services, Inc.'
disclosed a bug submitted by
b'mpiosik'
b'XSS with Visual Language Editor tags'
17 Sep 2023
b'8x8'
disclosed a bug submitted by
b'imranhudaa'
b'Unprotected Atlantis Server at https://132.226..'
15 Sep 2023
b'RubyGems'
disclosed a bug submitted by
b'ooooooo_q'
b'Possibility to guess email address from gravatar image URL'
14 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'kietna20'
b'Apache Airflow path traversal by authenticated user'
14 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'wct'
b"Potential NULL dereference in libssh's sftp server"
14 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'hungtd'
b'Regular Expression Denial of Service (ReDoS) Vulnerability before 2.6.3'
14 Sep 2023
b'HackerOne'
disclosed a bug submitted by
b'callmed0_4'
b'Able to see Bonus amount given to a report even if the bounty and Bonus is not visible to public or mentioned in {Report-Id}.json'
14 Sep 2023
b'GitLab'
disclosed a bug submitted by
b'mrrajputhacker2'
b'Information Disclosure - Pvt Gitlab Issue Disclosing Through GitLab Unfiltered YouTube channel.'
13 Sep 2023
b'curl'
disclosed a bug submitted by
b'selmelc'
b'CVE-2023-38039: HTTP header allocation DOS'
13 Sep 2023
b'Revive Adserver'
disclosed a bug submitted by
b'l4stb1t'
b'Multiple cross-site scripting (XSS) vulnerabilities in Revive Adserver'
13 Sep 2023
b'Tor'
disclosed a bug submitted by
b'andreien'
b"'Request English versions of web pages for enhanced privacy' keeps previous (grayed out) settings "
13 Sep 2023
b'HackerOne'
disclosed a bug submitted by
b'0verw4tch'
b'IDOR: Authorization Bypass in LockReport Mutation for public reports'
13 Sep 2023
b'TikTok'
disclosed a bug submitted by
b'rioncool22'
b'Stored XSS Via Ads Account Name'
12 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'sayoojbkumar'
b'SSRF Vulnerability through Connection test feature'
12 Sep 2023
b'Radancy'
disclosed a bug submitted by
b'mouhannadlrx'
b'Admin account/panel takeOver and Doing actions in admin panel via DOM-based XSS'
12 Sep 2023
b'Mozilla Core Services'
disclosed a bug submitted by
b'griffinf'
b'Mozilla Mastodon Staging Instance Admin API Key Disclosure Through Slack'
11 Sep 2023
b'Mozilla Critical Services'
disclosed a bug submitted by
b'saiteja1231323'
b'Response Manipulation to enable Account recovery key with out current password'
11 Sep 2023
b'Tennessee Valley Authority'
disclosed a bug submitted by
b'sailesh01nik'
b'No Rate Limit On Forgot Password Page'
11 Sep 2023
b'Tennessee Valley Authority'
disclosed a bug submitted by
b'tvmbug'
b'xss reflected - pq.tva.com'
11 Sep 2023
1
...
57
58
59
60
61
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM