REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'rullzer'
b'Password reset endpoint is not brute force protected'
21 Jul 2023
b'Node.js'
disclosed a bug submitted by
b'bensmyth'
b"DiffieHellman doesn't generate keys after setting a key"
20 Jul 2023
b'Node.js'
disclosed a bug submitted by
b'm_r_beauchamp'
b'node.js process aborts when processing x509 certs with invalid public key information'
20 Jul 2023
b'Node.js'
disclosed a bug submitted by
b'mattaustin'
b'Process-based permissions can be bypassed with the "inspector" module. '
20 Jul 2023
b'Node.js'
disclosed a bug submitted by
b'haxatron1'
b'Filesystem experimental permissions policy does not handle path traversal cases.'
20 Jul 2023
b'Node.js'
disclosed a bug submitted by
b'cjihrig'
b'fs.openAsBlob() bypasses permission system'
20 Jul 2023
b'Node.js'
disclosed a bug submitted by
b'cjihrig'
b"fs module's file watching is not restricted by --allow-fs-read"
20 Jul 2023
b'Node.js'
disclosed a bug submitted by
b'haxatron1'
b'The use of __proto__ in process.mainModule.__proto__.require() bypasses the permission system in Node v19.6.1'
20 Jul 2023
b'LinkedIn'
disclosed a bug submitted by
b'them4les_l1r'
b'Ad Account Takeover'
20 Jul 2023
b'Mozilla Core Services'
disclosed a bug submitted by
b'quikke'
b'[Hubs] - Broken access control in placing objects in hubs room'
20 Jul 2023
b'Bitwarden'
disclosed a bug submitted by
b'rink_'
b'Bypass for forced re-authentication upon biometrics change'
19 Jul 2023
b'Ruby'
disclosed a bug submitted by
b'piao'
b'heap-buffer-overflow in gc_writebarrier_incremental'
19 Jul 2023
b'Ruby'
disclosed a bug submitted by
b'sighook'
b'RDoc::MethodAttr is vulnerable to Regular Expression Denial of Service (ReDoS)'
18 Jul 2023
b'Ruby'
disclosed a bug submitted by
b'sighook'
b'Arbitrary file injection via symlink attack in rdoc generator'
18 Jul 2023
b'Ruby'
disclosed a bug submitted by
b'sighook'
b'XSS exploit of RDoc documentation generated by rdoc'
18 Jul 2023
b'Ruby'
disclosed a bug submitted by
b'sighook'
b'XSS exploit of RDoc documentation generated by rdoc (CVE-2013-0256)'
18 Jul 2023
b'Ruby'
disclosed a bug submitted by
b'sighook'
b'Stored XSS in RDoc hyperlinks through javascript scheme'
18 Jul 2023
b'Ruby'
disclosed a bug submitted by
b'ooooooo_q'
b'XSS in HTML generated by RDoc'
18 Jul 2023
b'Teleport'
disclosed a bug submitted by
b'notme404'
b'robots.txt file '
17 Jul 2023
b'Unikrn'
disclosed a bug submitted by
b'miquinho'
b'An IDOR that can lead to enumeration of a user and disclosure of email and phone number within cashier'
17 Jul 2023
1
...
64
65
66
67
68
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM