REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'HackerOne'
disclosed a bug submitted by
b'tectonic'
b"javascript: and mailto: links are allowed on users' profiles"
13 May 2015
b'Shopify'
disclosed a bug submitted by
b'ragnar'
b"Xss in website's link"
13 May 2015
b'Mobile Vikings'
disclosed a bug submitted by
b'ddworken'
b'XSS Vulnerability on all pages'
13 May 2015
b'PHP'
disclosed a bug submitted by
b'ruben'
b'Integer overflow in ftp_genlist() resulting in heap overflow'
12 May 2015
b'PHP'
disclosed a bug submitted by
b'andreapalazzo'
b'str_repeat() sign mismatch based memory corruption'
12 May 2015
b'PHP'
disclosed a bug submitted by
b'libnex'
b'Memory Corruption in phar_parse_tarfile when entry filename starts with null'
12 May 2015
b'Vimeo'
disclosed a bug submitted by
b'avlidienbrunn'
b'CRITICAL full source code/config disclosure for Cameo'
11 May 2015
b'Dropbox'
disclosed a bug submitted by
b'franjkovic'
b'Race condition when redeeming coupon codes'
11 May 2015
b'HackerOne'
disclosed a bug submitted by
b'vathsa'
b'Content Spoofing - External Link Warning Page'
11 May 2015
b'HackerOne'
disclosed a bug submitted by
b'prakharprasad'
b'Enumeration/Guess of Private (Invited) Programs'
09 May 2015
b'Adobe'
disclosed a bug submitted by
b'vathsa'
b"Reflected Cross Site Scripting - 'puser' Parameter in login page"
09 May 2015
b'Factlink'
disclosed a bug submitted by
b'rmashhoon'
b'Frameset Proxy Problem'
09 May 2015
wont-fix
b'Faceless'
disclosed a bug submitted by
b'dragonfire_inc'
b'Bypass Setup by External Activity Invoke'
09 May 2015
b'HackerOne'
disclosed a bug submitted by
b'atom'
b'Making any Report Failed to load'
09 May 2015
b'HackerOne'
disclosed a bug submitted by
b'atom'
b'Homograph Attack'
09 May 2015
b'HackerOne'
disclosed a bug submitted by
b'filedescriptor'
b'Homograph attack'
09 May 2015
b'HackerOne'
disclosed a bug submitted by
b'killr0x33d'
b'Fake URL + Additional vectors for homograph attack'
09 May 2015
b'Twitter'
disclosed a bug submitted by
b'anshuman_bh'
b'Unauthorized Tweeting on behalf of Account Owners'
07 May 2015
b'Flash'
disclosed a bug submitted by
b'irsdl'
b'Flash Cross Domain Policy Bypass by Using File Upload and Redirection - only in Chrome'
06 May 2015
b'HackerOne'
disclosed a bug submitted by
b'leander'
b'(lack of) smtp transport layer security'
05 May 2015
wont-fix
1
...
717
718
719
720
721
...
765
BY DENIS WERNER - @NOBBD -
IMPRESSUM