REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Stripe'
disclosed a bug submitted by
b'saajanbhujel'
b'XSS vulnerability without a content security bypass in a `CUSTOM` App through Button tag'
01 May 2023
b'Fastly VDP'
disclosed a bug submitted by
b'rubayet_hassan'
b'Unauthenticated cache purging'
01 May 2023
b'Fastly VDP'
disclosed a bug submitted by
b'xerhakhd'
b'Cache purge requests are not authenticated'
01 May 2023
b'Nextcloud'
disclosed a bug submitted by
b'brthnc'
b'Reference fetch can saturate the server bandwidth for 10 seconds'
29 Apr 2023
b'Nextcloud'
disclosed a bug submitted by
b'aslfv'
b'Name collision of shared folders'
29 Apr 2023
b'LinkedIn'
disclosed a bug submitted by
b'qualw1n'
b'Information disclosure by sending a GIF'
28 Apr 2023
b'Nextcloud'
disclosed a bug submitted by
b'mikaelgundersen'
b'Desktop client does not verify received singed certificate in end to end encryption'
27 Apr 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'das7pad'
b'Possible DoS Vulnerability in Multipart MIME parsing in rack'
27 Apr 2023
b'Hyperledger'
disclosed a bug submitted by
b'kmhlyxj0'
b'[indy_node]POOL_UPGRADE command injection, Trustee Node can execute command in any other Node`s system.'
27 Apr 2023
b'8x8'
disclosed a bug submitted by
b'pentestor'
b'Credential leak on GitHub: https://github.com/// (Peoplesoft CRM)'
27 Apr 2023
b'U.S. Department of State'
disclosed a bug submitted by
b'devdevrl'
b'HTML INJECTION on coins.state.gov'
26 Apr 2023
b'Brave Software'
disclosed a bug submitted by
b'j3rry-1729'
b'S3 Bucket Takeover "brave-browser-rpm-staging-release-test"'
26 Apr 2023
b'Brave Software'
disclosed a bug submitted by
b'j3rry-1729'
b'S3 Bucket Takeover : brave-apt'
26 Apr 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'dee-see'
b'CVE-2023-28755: ReDoS vulnerability in URI'
26 Apr 2023
b'Reddit'
disclosed a bug submitted by
b'revolte'
b'Blind SSRF with Escalation possibilities in matrix preview_link API'
26 Apr 2023
b'Omise'
disclosed a bug submitted by
b'muhammadilyas'
b"The endpoint '/test/webhooks' is vulnerable to DNS Rebinding"
26 Apr 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ooooooo_q'
b'ReDoS( Ruby, Time)'
26 Apr 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Retrospective change of message timestamp and order'
25 Apr 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Messages can be hidden regardless of server configuration'
25 Apr 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'priyank_parmar'
b'Improper Access Control - Generic'
25 Apr 2023
1
...
74
75
76
77
78
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM