REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
55
b'ooooooo_q'
49
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Twitter'
disclosed a bug submitted by
b'cqoicebordel'
b'Bad extended ascii handling in HTTP 301 redirects of t.co'
09 Aug 2015
b'Mavenlink'
disclosed a bug submitted by
b'bugs3ra'
b'Open/Unvalidated Redirect Issue'
06 Aug 2015
b'Keybase'
disclosed a bug submitted by
b'alihassanghori'
b'Content Sniffing not disabled'
05 Aug 2015
b'HackerOne'
disclosed a bug submitted by
b'jessescitech'
b'Number of invited researchers disclosed as part of JSON search response'
05 Aug 2015
b'PHP'
disclosed a bug submitted by
b'seanhn'
b'Dangling pointer in the unserialization of ArrayObject items'
05 Aug 2015
b'PHP'
disclosed a bug submitted by
b'ryat'
b'Multiple Use After Free Vulnerabilites in unserialize()'
05 Aug 2015
b'PHP'
disclosed a bug submitted by
b'stewie'
b'Files extracted from archive may be placed outside of destination directory'
05 Aug 2015
b'Keybase'
disclosed a bug submitted by
b'paresh_v1n1'
b'No rate limiting for sensitive actions (like "forgot password") enables user enumeration'
04 Aug 2015
b'PHP'
disclosed a bug submitted by
b'andreapalazzo'
b'curl_setopt_array() type confusion'
04 Aug 2015
b'PHP'
disclosed a bug submitted by
b'dimitri'
b'Arbitrary code execution in str_ireplace function'
04 Aug 2015
b'PHP'
disclosed a bug submitted by
b'haquaman'
b'Mem out-of-bounds write (segfault) in ZEND_ASSIGN_DIV_SPEC_CV_UNUSED_HANDLER'
02 Aug 2015
b'PHP'
disclosed a bug submitted by
b'haquaman'
b'null pointer deref (segfault) in zend_eval_const_expr'
02 Aug 2015
b'Informatica'
disclosed a bug submitted by
b'ddworken'
b'XSS in Search Communities Function'
31 Jul 2015
b'Marktplaats'
disclosed a bug submitted by
b'vathsa'
b'Content Spoofing - http://aanbieding.marktplaats.nl/wp-admin/admin-ajax.php'
31 Jul 2015
b'Flox'
disclosed a bug submitted by
b'anonymous_anon'
b'Email spoofing configuration missing'
27 Jul 2015
wont-fix
b'MapLogin'
disclosed a bug submitted by
b'arun_agr'
b'Account creation code bypass'
25 Jul 2015
b'Python'
disclosed a bug submitted by
b'johnleitch'
b'array.fromstring Use After Free'
25 Jul 2015
b'Square'
disclosed a bug submitted by
b'jmoore15'
b'Delayed, fraudulent transactions possible with encrypted Square Reader devices due to lack of server-side verification of device transaction counter'
24 Jul 2015
b'Shopify'
disclosed a bug submitted by
b'nismo'
b'Bulk Discount App in myshopify.com exposes http://bulkdiscounts.shopifyapps.com vulnerable to XSS'
23 Jul 2015
b'Marktplaats'
disclosed a bug submitted by
b'bugs3ra'
b'Secret Password reset key disclosed to third party site via referer in header'
23 Jul 2015
1
...
658
659
660
661
662
...
715
BY DENIS WERNER - @NOBBD -
IMPRESSUM