REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'bohwaz'
b'the complete server installation path is visible in cloud/user endpoint'
30 Mar 2023
b'Nextcloud'
disclosed a bug submitted by
b'gorei'
b'Insecure randomness for default password in file sharing when password policy app is disabled'
30 Mar 2023
b'Nextcloud'
disclosed a bug submitted by
b'rullzer'
b'Secure view trivial to bypass'
30 Mar 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'timon8'
b'CRLF Injection in Nodejs undici via host'
29 Mar 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'mj0nes-vsat'
b'CVE-2023-23919: Multiple OpenSSL error handling issues in nodejs crypto library'
29 Mar 2023
b'LinkedIn'
disclosed a bug submitted by
b'tushar6378'
b'Unauthorized User can View Subscribers of Other Users Newsletters'
29 Mar 2023
b'LINE'
disclosed a bug submitted by
b'yinmo'
b'iOS group chat denial of service'
29 Mar 2023
b'ExpressionEngine'
disclosed a bug submitted by
b'karezma'
b'PHP Object injection -> Building Custom Gadget chain -> RCE '
28 Mar 2023
b'LINE'
disclosed a bug submitted by
b'rioncool22'
b'Stored XSS Via Filename On https://partners.line.me/'
28 Mar 2023
b'LINE'
disclosed a bug submitted by
b'tosun'
b'Debugging panel exposure'
28 Mar 2023
b'LINE'
disclosed a bug submitted by
b'tosun'
b'Path traversal in a Tomcat server'
28 Mar 2023
b'8x8'
disclosed a bug submitted by
b'shriyanss'
b'speedtest.8x8.com: Enabled Directory Listing '
28 Mar 2023
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'boy_child_'
b'Bypassing creation of API tokens without email verification'
27 Mar 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'wonda_tea_coffee'
b'Open Redirect Vulnerability in Action Pack'
26 Mar 2023
b'Nextcloud'
disclosed a bug submitted by
b'bncrypted'
b'Lack of bruteforce protection for TOTP 2FA'
26 Mar 2023
b'Nextcloud'
disclosed a bug submitted by
b'bncrypted'
b'Arbitrary read of all SVG files on a Nextcloud server'
26 Mar 2023
b'Nextcloud'
disclosed a bug submitted by
b'shakierbellows'
b'Cards in Deck are readable by any user'
26 Mar 2023
b'U.S. Department of State'
disclosed a bug submitted by
b'qualw1n'
b'Accessing unauthorized administration pages and seeing admin password - speakerkit.state.gov'
25 Mar 2023
b'Nextcloud'
disclosed a bug submitted by
b'lukasreschke'
b'Chat room member disclosure via autocomplete API'
25 Mar 2023
b'U.S. Department of State'
disclosed a bug submitted by
b'hollaatm3'
b'Bypassing Whitelist to perform SSRF for internal host scanning'
24 Mar 2023
1
...
78
79
80
81
82
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM