REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
bobrov
117
sp1d3rs
86
geeknik
80
linkks
75
jobert
70
someonenobbd
62
nyymi
58
ooooooo_q
51
haxta4ok00
49
jon_bottarini
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
Uzbey LLC
disclosed a bug submitted by
bitquark
Album image XSS
18 Jul 2014
CloudFlare
disclosed a bug submitted by
prakharprasad
Flash-based XSS in cdnjs.cloudflare.com subdomain
17 Jul 2014
Musopen
disclosed a bug submitted by
faisalahmed
USERNAME Related Issue!
17 Jul 2014
HackerOne
disclosed a bug submitted by
ashesh
Cache leads to Privacy leaks
17 Jul 2014
HackerOne
disclosed a bug submitted by
pranav_hivarekar
Account takeover
17 Jul 2014
wont-fix
HackerOne
disclosed a bug submitted by
shahmeer_amir
Session Hijacking attack (Different Scenario)
17 Jul 2014
wont-fix
HackerOne
disclosed a bug submitted by
ashesh
No option to logout concurrent sessions
17 Jul 2014
wont-fix
InVision
disclosed a bug submitted by
niks
captcha missing
16 Jul 2014
Automattic
disclosed a bug submitted by
niks
information disclosure
16 Jul 2014
Mail.Ru
disclosed a bug submitted by
chandrakant
Clicjacking on Login panel
14 Jul 2014
Coin.co
disclosed a bug submitted by
robin
Host header is not Validated resulting in Redirect
14 Jul 2014
wont-fix
Apache httpd
disclosed a bug submitted by
gianko
moderate: mod_deflate denial of service
14 Jul 2014
Factlink
disclosed a bug submitted by
rockcena
Criptographic Issue: Strisct Transport Security with not good max age..(TOO SHORT!)
13 Jul 2014
FanFootage
disclosed a bug submitted by
jyoti
Same user name and uuid for multiple user names
13 Jul 2014
Coin.co
disclosed a bug submitted by
atom
OPTIONS method is enabled
13 Jul 2014
wont-fix
Coin.co
disclosed a bug submitted by
alias
Directory Listing
13 Jul 2014
Automattic
disclosed a bug submitted by
siddiki
Process of changing email address and password does not asks old Password.
11 Jul 2014
wont-fix
Mavenlink
disclosed a bug submitted by
siddiki
Password reset token not expiring
10 Jul 2014
Mail.Ru
disclosed a bug submitted by
reactors08
XSS in a file or folder name
09 Jul 2014
OkCupid
disclosed a bug submitted by
smiegles
http://www.helloquizzy.com/quizzy/createlist Cross-site scripting vulnerability
08 Jul 2014
1
...
701
702
703
704
705
...
723
BY DENIS WERNER - @NOBBD -
IMPRESSUM