REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mdfarhanchowdhuryhasin'
b'Email exploitation with web hosting services.'
14 Apr 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'0r10nh4ck'
b' WordPress application vulnerable to DoS attack via wp-cron.php'
14 Apr 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'0r10nh4ck'
b'Unauthenticated Blind SSRF at https:// via xmlrpc.php file'
14 Apr 2023
b'Trellix'
disclosed a bug submitted by
b'ashishmurugan'
b'Sensitive Information Disclosure'
14 Apr 2023
b'Gener8'
disclosed a bug submitted by
b'0ct0pu3'
b'Twitter Broken Link in https://gener8ads.com (Hackerone Profile)'
13 Apr 2023
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'esx'
b"A malicious actor could rotate tokens of a victim, given that he knows the victim's token ID"
13 Apr 2023
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'ali_hassan_khan'
b"Cloudflare is not properly deleting user's account"
13 Apr 2023
b'MetaMask'
disclosed a bug submitted by
b'renniepak'
b'Possible to spoof Origin in "Connected Sites"'
13 Apr 2023
b'TikTok'
disclosed a bug submitted by
b'h4x0r_dz'
b'Unrestricted File Upload on https://partner.tiktokshop.com/wsos_v2/oec_partner/upload'
12 Apr 2023
b'ownCloud'
disclosed a bug submitted by
b'lukasreschke'
b'Remote Code Execution on ownCloud instances with ImageMagick installed'
12 Apr 2023
b'ownCloud'
disclosed a bug submitted by
b'atorralba'
b'GitHub Security Lab (GHSL) Vulnerability Report: SQLInjection in FileContentProvider.kt (GHSL-2022-059)'
12 Apr 2023
b'Nextcloud'
disclosed a bug submitted by
b'ctulhu'
b'Ability to read any emails through IDOR on Nextcloud Mail'
12 Apr 2023
b'HackerOne'
disclosed a bug submitted by
b'refaat01'
b'adding h1_analyst_* to username for normal users '
12 Apr 2023
b'Brave Software'
disclosed a bug submitted by
b'mrzheev'
b'UXss on brave browser via scan QR Code'
11 Apr 2023
b'Expedia Group Bug Bounty'
disclosed a bug submitted by
b'exploitmsf'
b'Sensitive information for phpinfo.php at https://products.ean.com/'
11 Apr 2023
b'LinkedIn'
disclosed a bug submitted by
b'anandpingsafe'
b"Can delete other user's post and company page post"
11 Apr 2023
b'Weblate'
disclosed a bug submitted by
b'triplesided'
b'Testing flow includes a DeepSource secret'
11 Apr 2023
b'U.S. Department of State'
disclosed a bug submitted by
b'nepalihacker0x01'
b'IDOR in TalentMAP API can be abused to enumerate personal information of all the users'
11 Apr 2023
b'MetaMask'
disclosed a bug submitted by
b'ronnyx2017'
b'Bypass parsing of transaction data, users on the phishing site will transfer/approve ERC20 tokens without being alerted'
10 Apr 2023
b'Nextcloud'
disclosed a bug submitted by
b'ctulhu'
b'Ability to control the filename when uploading a logo or favicon on theming'
10 Apr 2023
1
...
76
77
78
79
80
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM