REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Rocket.Chat'
disclosed a bug submitted by
b'rijalrojan'
b'NoSQL injection in listEmojiCustom method call'
09 May 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'sectex'
b'Cross-Site-Scripting in "Search Messages"'
09 May 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Mute User can disclose private channel members to unauthorized users'
09 May 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'vv9k'
b'Maliciously crafted message can cause Rocket.Chat server to stop responding'
09 May 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Moving private messages into vision with updateMessage method'
09 May 2023
b'Elastic'
disclosed a bug submitted by
b'lu3ky-13'
b'blind Server-Side Request Forgery (SSRF) allows scanning internal ports'
05 May 2023
b'Expedia Group Bug Bounty'
disclosed a bug submitted by
b'bombon'
b'Reflected XSS Via origCity Parameter (UPPER Case + WAF Protection Bypass)'
04 May 2023
b'Nextcloud'
disclosed a bug submitted by
b'meinereiner'
b'App pin of the Android app can be bypassed via 3rdparty apps generating deep links'
04 May 2023
b'Nextcloud'
disclosed a bug submitted by
b'nickvergessen'
b'Potential directory traversal in OC\\Files\\Node\\Folder::getFullPath'
04 May 2023
b'Nextcloud'
disclosed a bug submitted by
b'juliushaertl'
b'Document content of files can be obtained through Collabora for files of other users'
04 May 2023
b'Nextcloud'
disclosed a bug submitted by
b'juliushaertl'
b'Hide download previews are accessible without a watermark'
04 May 2023
b'Ruby'
disclosed a bug submitted by
b'leixiao'
b'Header CRLF Injection in Ruby Net::HTTP'
04 May 2023
b'HackerOne'
disclosed a bug submitted by
b'datph4m'
b'Insecure Direct Object Reference (IDOR) - Delete Campaigns '
03 May 2023
b'TD Bank'
disclosed a bug submitted by
b'def1ant'
b'Reflected XSS on marketsandresearch.td.com'
03 May 2023
b'Stripe'
disclosed a bug submitted by
b'saajanbhujel'
b'Possible XSS vulnerability without a content security bypass'
01 May 2023
b'Stripe'
disclosed a bug submitted by
b'saajanbhujel'
b'XSS vulnerability without a content security bypass in a `CUSTOM` App through Button tag'
01 May 2023
b'Fastly VDP'
disclosed a bug submitted by
b'rubayet_hassan'
b'Unauthenticated cache purging'
01 May 2023
b'Fastly VDP'
disclosed a bug submitted by
b'xerhakhd'
b'Cache purge requests are not authenticated'
01 May 2023
b'Nextcloud'
disclosed a bug submitted by
b'brthnc'
b'Reference fetch can saturate the server bandwidth for 10 seconds'
29 Apr 2023
b'Nextcloud'
disclosed a bug submitted by
b'aslfv'
b'Name collision of shared folders'
29 Apr 2023
1
...
61
62
63
64
65
...
717
BY DENIS WERNER - @NOBBD -
IMPRESSUM