REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Hyperledger'
disclosed a bug submitted by
b'bhaskar_ram'
b'Cross Site Scripting Vulnerability in fabric-sdk-py source code '
17 Aug 2022
b'TikTok'
disclosed a bug submitted by
b'aidilarf_2000'
b'IDOR on TikTok Seller'
16 Aug 2022
b'TikTok'
disclosed a bug submitted by
b's3c'
b'CSRF Account Takeover'
16 Aug 2022
b'Semrush'
disclosed a bug submitted by
b'a_d_a_m'
b"IDOR allowing to read another user's token on the Social Media Ads service"
16 Aug 2022
b'Kubernetes'
disclosed a bug submitted by
b'amlweems'
b'Ingress-nginx annotation injection allows retrieval of ingress-nginx serviceaccount token and secrets across all namespaces'
13 Aug 2022
b'Showmax'
disclosed a bug submitted by
b'miron666'
b'Reflected XSS at https://stories.showmax.com/wp-content/themes/theme-internal_ss/blocks/ajax/a.php via `ss_country_filter` param'
12 Aug 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b's1r1u5'
b'Disabling context isolation, nodeIntegrationInSubFrames using an unauthorised frame.'
11 Aug 2022
b'Shopify'
disclosed a bug submitted by
b'0x50d'
b'Admin panel Exposure without credential at https://plus-website.shopifycloud.com/admin.php'
11 Aug 2022
b'Top Echelon Software'
disclosed a bug submitted by
b'hammodmt'
b'Wordpress Users Disclosure (/wp-json/wp/v2/users/) '
11 Aug 2022
b'Hyperledger'
disclosed a bug submitted by
b'bhaskar_ram'
b'fix(security):Path Traversal Bug'
11 Aug 2022
b'Top Echelon Software'
disclosed a bug submitted by
b'sohelahmed786'
b'Disable xmlrpc.php file'
11 Aug 2022
b'PortSwigger Web Security'
disclosed a bug submitted by
b'mr_vrush'
b'Redirection in Repeater & Intruder Tab'
11 Aug 2022
b'Hyperledger'
disclosed a bug submitted by
b'cet2000'
b'many commands can be manipulated to delete identities or affiliations'
10 Aug 2022
b'Acronis'
disclosed a bug submitted by
b'mega7'
b'Read-only administrator can change agent update settings'
10 Aug 2022
b'Glassdoor'
disclosed a bug submitted by
b'emanelyazji'
b'[CRITICAL] Full account takeover without user interaction on sign with Apple flow'
09 Aug 2022
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Ability to escape database transaction through SQL injection, leading to arbitrary code execution'
09 Aug 2022
b'Top Echelon Software'
disclosed a bug submitted by
b'anonymmert12'
b'xmlrpc.php FILE IS enable it will used for Bruteforce attack and Denial of Service(DoS)'
08 Aug 2022
b'Nextcloud'
disclosed a bug submitted by
b'error2001'
b'Lack of Rate limit while joining video call in talk section which is password protected'
08 Aug 2022
b'RATELIMITED'
disclosed a bug submitted by
b'codeslayer137'
b'HTTP PUT method is enabled downloader.ratelimited.me'
07 Aug 2022
b'Omise'
disclosed a bug submitted by
b'codeslayer137'
b'Anonymous access control - Payments Status'
07 Aug 2022
1
...
96
97
98
99
100
...
717
BY DENIS WERNER - @NOBBD -
IMPRESSUM