REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'tareq4'
b'Notes attachments render HTML in preview mode'
10 Aug 2023
b'Nextcloud'
disclosed a bug submitted by
b'unknownsh'
b'Improper restriction of excessive authentication attempts on WebDAV endpoint '
10 Aug 2023
b'Nextcloud'
disclosed a bug submitted by
b'cult'
b'Any (non-admin) user from an instance can destroy any (user and/or global) external filesystem'
10 Aug 2023
b'Nextcloud'
disclosed a bug submitted by
b'mikaelgundersen'
b'New AppPassword can be generated without password confirmation'
10 Aug 2023
b'Nextcloud'
disclosed a bug submitted by
b'mikaelgundersen'
b'Missing brute force protection on OAuth2 API controller'
10 Aug 2023
b'HackerOne'
disclosed a bug submitted by
b'fuzzsqlb0f'
b'Private Email Address Leak of H1 Researchers.'
08 Aug 2023
b'HackerOne'
disclosed a bug submitted by
b'japz'
b'Usernames still visible on report export pdf despite "I want to redact all usernames" is selected'
08 Aug 2023
b'TikTok'
disclosed a bug submitted by
b'7hamoody1'
b'Dom XSS and open redirect in TikTok seller endpoint'
07 Aug 2023
b'JFrog'
disclosed a bug submitted by
b'protector_5512'
b'Impersonation attack via Broken link in "blog-author" page'
06 Aug 2023
b'WakaTime'
disclosed a bug submitted by
b'talha828'
b'Waketime Payment Gateway Vulnerability'
05 Aug 2023
b'Kubernetes'
disclosed a bug submitted by
b'jpts'
b'Privilege Escalation in kOps using GCE/GCP Provider'
04 Aug 2023
b'Nutanix'
disclosed a bug submitted by
b'tosun'
b'Limited Disclosure: Employee credentials checked in to github (fixed)'
03 Aug 2023
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'vanhoefm'
b'Plaintext leakage of DNS requests in Windows 1.1.1.1 WARP client'
03 Aug 2023
b'Brave Software'
disclosed a bug submitted by
b'world_languages'
b'Tor IP leak caused by the PDF Viewer extension in certain situations'
02 Aug 2023
b'Ruby'
disclosed a bug submitted by
b'ooooooo_q'
b'XMLRPC does not limit deserializable classes.'
01 Aug 2023
b'Valve'
disclosed a bug submitted by
b'g1a55er'
b'Steam Deck Single Click Root Remote Code Execution '
01 Aug 2023
b'GitHub'
disclosed a bug submitted by
b'inspector-ambitious'
b'Smuggling content in PR with refs/replace in GitHub'
01 Aug 2023
b'Sorare'
disclosed a bug submitted by
b'fixenet'
b'Operation CreateOrUpdateSo5LineupMutation does not restrict multiple captains'
01 Aug 2023
b'LinkedIn'
disclosed a bug submitted by
b'spaceboy20'
b'bypass two-factor authentication.'
01 Aug 2023
b'RATELIMITED'
disclosed a bug submitted by
b'codeslayer137'
b'Apache mod_negotiation filename bruteforcing https://api.ratelimited.me'
01 Aug 2023
1
...
62
63
64
65
66
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM