REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'curl'
disclosed a bug submitted by
b'letshack9707'
b"Arbitrary free in curl's config file parsing."
23 Nov 2025
b'Basecamp'
disclosed a bug submitted by
b'stackered'
b'Improper bot-authentication allows to impersonate any user when sending messages in a room'
21 Nov 2025
b'Django'
disclosed a bug submitted by
b'stackered'
b'Path traversal via archive.extract - CVE 2021-3281 incomplete patch'
21 Nov 2025
b'curl'
disclosed a bug submitted by
b'gaurav_7777'
b'Out-of-bounds read in HTTP method handling causes undefined behavior and potential crash This is sharp, Gaurav. Weve got a real memory-safety bug ins'
20 Nov 2025
b'Bykea'
disclosed a bug submitted by
b'sameer_ali'
b'Lack of minimum value bid wheel verification on customer_bid in Rental Trips'
20 Nov 2025
b'Bykea'
disclosed a bug submitted by
b'sameer_ali'
b'Customer can cancel a individual booking in a batch, causing locking of partner.'
20 Nov 2025
b'AWS VDP'
disclosed a bug submitted by
b'savannabungee'
b'Existence of completed pods allows for bypass of Kubernetes NetworkPolicy'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'vidang04'
b'Unrestricted setPerPage allows huge result sets / resource exhaustion / mass log retrieval'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'yoyomiski'
b'Username normalization missing allows visually indistinguishable accounts (Whitespace-Based Impersonation)'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'vidang04'
b'Stored-XSS in campaign name displayed in Banners modal'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'yoyomiski'
b'Stored-XSS in Banner Name field '
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'vidang04'
b'Reflected XSS in /admin/banner-zone.php (v6.0.0+)'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'yoyomiski'
b'Information Disclosure via Verbose Error Messages'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'cyberjoker'
b'IDOR Vulnerability in Banner Deletion '
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'yoyomiski'
b'Information Disclosure via Add user lookup in Account Management (User Access)'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'cyberjoker'
b'Stored XSS in Conversion Statistics via Tracker Name'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'lu3ky-13'
b'Stored XSS on inventory-retrieve.php'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'lu3ky-13'
b'Improper sanitisation of input in the settings could cause DoS'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'lu3ky-13'
b'Reflected XSS in account-preferences-plugin.php'
19 Nov 2025
b'Revive Adserver'
disclosed a bug submitted by
b'yoyomiski'
b'Authorization bypass allows changing email address of other users'
19 Nov 2025
1
...
7
8
9
10
11
...
752
BY DENIS WERNER - @NOBBD -
IMPRESSUM