REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Message ID Enumeration with Regular Expression in getReadReceipts Meteor method'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'API route chat.getThreadsList leaks private message content'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'NoSQL-Injection discloses S3 File Upload URLs'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'getRoomRoles Method leaks Channel Owner'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'TOTP 2 Factor Authentication Bypass'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Message ID Enumeration with Action Link Handler'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'paulocsanz'
b'REST API gets `query` as parameter and executes it'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'rolfzur'
b'Unintended information disclosure in the Hubot Log files'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'dago_669'
b'Bypass local authentication (PIN code)'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'getUserMentionsByChannel leaks messages with mention from private channel'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'garretby'
b'It is possible to elevate privileges for any authenticated user to view permissions matrix and view Direct messages without appropriate permissions.'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'danieljpp'
b'Persistent CSS injection with marked markdown parser in Rocket.Chat'
22 Sep 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'ghaem51'
b'Regex account takeover'
22 Sep 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'XSS in ZenTao integration affecting self hosted instances without strict CSP'
22 Sep 2022
b'8x8'
disclosed a bug submitted by
b'is-'
b'DLL Search-Order Hijacking Vulnerability in work-64-exe-v7.16.3-1.exe'
22 Sep 2022
b'TikTok'
disclosed a bug submitted by
b'datph4m'
b'Add products to any livestream.'
21 Sep 2022
b'TikTok'
disclosed a bug submitted by
b'datph4m'
b'Create product discounts of any shop'
21 Sep 2022
b'PlayStation'
disclosed a bug submitted by
b'theflow0'
b'size_t-to-int vulnerability in exFAT leads to memory corruption via malformed USB flash drives'
21 Sep 2022
b'Mattermost'
disclosed a bug submitted by
b'catenacyber'
b'DOS: out of memory from gif through upload api'
21 Sep 2022
b'TikTok'
disclosed a bug submitted by
b'apapedulimu'
b'IDOR on Tagged People'
20 Sep 2022
1
...
90
91
92
93
94
...
717
BY DENIS WERNER - @NOBBD -
IMPRESSUM