REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nord Security'
disclosed a bug submitted by
b'tlsh1'
b'Subscription check bypass of NordVPN service '
17 Jul 2023
b'Nextcloud'
disclosed a bug submitted by
b'polapain1337'
b'Brute force protection allows to send more requests than intended'
13 Jul 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'sw0rd1ight'
b'CVE-2023-28710 Apache Airflow Spark Provider Arbitrary File Read via JDBC'
12 Jul 2023
b'TikTok'
disclosed a bug submitted by
b'zerody'
b'CSRF protection bypass on TikTok Webcast Endpoints'
12 Jul 2023
b'HackerOne'
disclosed a bug submitted by
b'the_arch_angel'
b'Asset Inventory Internal Descriptions are leaked in CSV export'
12 Jul 2023
b'Tennessee Valley Authority'
disclosed a bug submitted by
b'dreamer_eh'
b'Rate limit missing sign-in page'
11 Jul 2023
b'HackerOne'
disclosed a bug submitted by
b'nagli'
b'2M Reports on HackerOne Celebration! - Ability to bulk-submit many reports.'
11 Jul 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'fabianfreyer'
b'Server-side RCE through directory traversal-based arbitrary file write'
10 Jul 2023
b'8x8'
disclosed a bug submitted by
b'ssharmaz'
b'xss(r) vcc-na11.8x8.com'
10 Jul 2023
b'Ruby on Rails'
disclosed a bug submitted by
b'haqpl'
b'ActionView sanitize helper bypass leading to XSS using SVG tag.'
10 Jul 2023
b'SHEIN'
disclosed a bug submitted by
b'x1337loser'
b'RCE via npm misconfig -- installing internal libraries from the public registry'
08 Jul 2023
b'MetaMask'
disclosed a bug submitted by
b'hackerontwowheels'
b'Arbitrary file write triggered by deeplink abuse - MetaMask Android'
07 Jul 2023
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'mega7'
b'Basic XSS [WAF Bypasses]'
07 Jul 2023
b'HackerOne'
disclosed a bug submitted by
b'light3r'
b'Banned user still able to invited to reports as a collabrator and reset the password'
06 Jul 2023
b'Rockstar Games'
disclosed a bug submitted by
b'0xshivam'
b'Improper Authentication inside the Rockstar Games Launcher which leads to Account takeover to some extend'
05 Jul 2023
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Internal machine learning API endpoint for CWE classification is vulnerable to path traversal'
05 Jul 2023
b'inDrive'
disclosed a bug submitted by
b'mikejohnson_1'
b'inDriver Job - Admin Approval Bypass'
05 Jul 2023
b'Newegg'
disclosed a bug submitted by
b'team_tsk'
b'Endpoint disclosing user password'
05 Jul 2023
b'MetaMask'
disclosed a bug submitted by
b'renekroka'
b'MetaMask Browser URL and Transaction Origin Spoofing - Metamask wallet Android & Metamask wallet iOS'
04 Jul 2023
b'HackerOne'
disclosed a bug submitted by
b'0xrayan1996'
b'An attacker can can view any hacker email via /SaveCollaboratorsMutation operation name '
04 Jul 2023
1
...
65
66
67
68
69
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM