REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'inDrive'
disclosed a bug submitted by
b'trustworthy'
b'the domain is truck-admin.eu-east-1.indriverapp.com and Enter the management system of the blasting mobile phone verification code'
11 Sep 2023
b'Node.js'
disclosed a bug submitted by
b'rafaelgss'
b'process.binding() can bypass the permission model through path traversal'
10 Sep 2023
b'Node.js'
disclosed a bug submitted by
b'rafaelgss'
b'fs.statfs bypasses Permission Model'
10 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'leodog896'
b'Dependency Policy Bypass via process.binding'
09 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'bean-zhang'
b"Argocd's web terminal session doesn't expire"
09 Sep 2023
b'Nextcloud'
disclosed a bug submitted by
b'carl_schwan'
b'Permissions not respected when copying entire group folders'
09 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'0xmaruf'
b'CVE-2023-24488 xss on https:///'
08 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'stored cross site scripting in https://.edu'
08 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fklet'
b'XSS Reflected'
08 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'hackdog0ne'
b'Blind Sql Injection in https:///qsSearch.aspx'
08 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'hackdog0ne'
b'Blind Sql Injection in https:///'
08 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'shuvam321'
b'LDAP Anonymous Login enabled in '
08 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'kirs112'
b'SqlInject at '
08 Sep 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mega7'
b'Adobe ColdFusion - Access Control Bypass [CVE-2023-38205] at '
08 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'happyhacking123'
b'CVE-2023-40195: Apache Airflow Spark Provider Deserialization Vulnerability RCE'
08 Sep 2023
b'HackerOne'
disclosed a bug submitted by
b'fanimalikhack'
b"Unauthorized Ticket can be created by an Attacker in user's Helpdesk account"
08 Sep 2023
b'HackerOne'
disclosed a bug submitted by
b'as_patro'
b'Support Tickets can be created on behalf of other users using spoofed email | Bypass of #2001913'
08 Sep 2023
b'Yelp'
disclosed a bug submitted by
b'lil_endian'
b'yelp.com and biz.yelp.com ATO via XSS + Cookie Bridge'
08 Sep 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ryotak'
b'[CVE-2023-23913] DOM Based Cross-site Scripting in rails-ujs for contenteditable HTML Elements'
07 Sep 2023
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'callmed0_4'
b'Ability to bypass Admin override on Cloudflare WARP Android'
07 Sep 2023
1
...
58
59
60
61
62
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM