REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mars'
disclosed a bug submitted by
b'0xs4m'
b"IDOR ' can delete any animal from other account ' at https://www.miroyalcanin.cl/ "
23 Jun 2023
b'Mars'
disclosed a bug submitted by
b'0xs4m'
b"Stored XSS via ' profile ' at https://www.miroyalcanin.cl/"
23 Jun 2023
b'Mars'
disclosed a bug submitted by
b'ze2paac'
b'CRLF Inection at `banfieldassets.com`'
23 Jun 2023
b'Mars'
disclosed a bug submitted by
b'ze2paac'
b'Information Exposure Through Directory Listing'
23 Jun 2023
b'Mars'
disclosed a bug submitted by
b'0xs4m'
b"' Full Account Takeover ' at https://www.miroyalcanin.cl/"
23 Jun 2023
b'Mars'
disclosed a bug submitted by
b'0xs4m'
b"IDOR ' can change any account email and cannot retrieve his account and access it ' at https://www.miroyalcanin.cl/"
23 Jun 2023
b'Nextcloud'
disclosed a bug submitted by
b'nickvergessen'
b'user_oidc app is missing bruteforce protection'
23 Jun 2023
b'TikTok'
disclosed a bug submitted by
b'rektile404'
b'Improper user validation on mentions and hashtags'
22 Jun 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'sachinrajput'
b'Reflected Cross-Site Scripting(CVE-2022-32770 )'
22 Jun 2023
b'Mars'
disclosed a bug submitted by
b'0xs4m'
b"IDOR ' can add animal to other account ' at https://www.miroyalcanin.cl/"
22 Jun 2023
b'Node.js'
disclosed a bug submitted by
b'tniessen'
b'OpenSSL engines can be used to bypass and/or disable the permission model'
22 Jun 2023
b'Nextcloud'
disclosed a bug submitted by
b'akshayravic09yc47'
b'Open redirect on "Unsupported browser" warning'
22 Jun 2023
b'Nextcloud'
disclosed a bug submitted by
b'rullzer'
b'End-to-end encrypted file-drops can be made inaccessible'
22 Jun 2023
b'Brave Software'
disclosed a bug submitted by
b'nishimunea'
b'HTML injection in title of reader view'
22 Jun 2023
b'Brave Software'
disclosed a bug submitted by
b'nishimunea'
b'Universal XSS through FIDO U2F register from subframe'
22 Jun 2023
b'Brave Software'
disclosed a bug submitted by
b'nishimunea'
b'Phishing/Malware site blocking on Brave iOS can be bypassed with trailing dot in hostname'
22 Jun 2023
b'Brave Software'
disclosed a bug submitted by
b'nishimunea'
b'Onion-Location header allows to open arbitrary URLs including chrome:'
22 Jun 2023
b'Brave Software'
disclosed a bug submitted by
b'nishimunea'
b'XSS on Brave Today through custom RSS feed'
22 Jun 2023
b'Brave Software'
disclosed a bug submitted by
b'nishimunea'
b'New XSS vector in ReaderMode with %READER-TITLE-NONCE%'
22 Jun 2023
b'Brave Software'
disclosed a bug submitted by
b'nishimunea'
b'Universal XSS with Playlist feature'
22 Jun 2023
1
...
67
68
69
70
71
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM