REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Hyperledger'
disclosed a bug submitted by
b'bhaskar_ram'
b'fix(cmd-socketio-server): mitigate cross site scripting attack #2068'
21 Jul 2022
b'TikTok'
disclosed a bug submitted by
b'0x7'
b'DOM XSS on ads.tiktok.com'
20 Jul 2022
b'TikTok'
disclosed a bug submitted by
b'hein_thant'
b'Internal Employee informations Disclosure via TikTok Athena api'
20 Jul 2022
b'LinkedIn'
disclosed a bug submitted by
b'sachin_kumar_'
b'Can access the job name, creator name and can report any draft/under review/rejected job'
20 Jul 2022
b'8x8'
disclosed a bug submitted by
b'shuvam321'
b'LFI via Jolokia at https://...:1293'
20 Jul 2022
b'Acronis'
disclosed a bug submitted by
b'thewikiii'
b'HTML Injection in E-mail Not Resolved ()'
19 Jul 2022
b'Stripe'
disclosed a bug submitted by
b'tabaahi'
b'Without verifying email and activate account, user can perform all action which are not supposed to be done'
18 Jul 2022
b'EXNESS'
disclosed a bug submitted by
b'omer'
b'subdomain takeover at odoo-staging.exness.io'
18 Jul 2022
b'Acronis'
disclosed a bug submitted by
b'second_grade_pentester'
b'unauth mosquitto ( client emails, ips, license keys exposure )'
18 Jul 2022
b'OneWeb'
disclosed a bug submitted by
b'thewikiii'
b' Cross-site scripting (DOM-based)'
18 Jul 2022
b'8x8'
disclosed a bug submitted by
b'mr_k0anti'
b'CVE-2019-11248 on http://...:9100/debug/pprof/goroutine'
18 Jul 2022
b'8x8'
disclosed a bug submitted by
b'mr_k0anti'
b'Public Apache Tomcat /examples example directory'
18 Jul 2022
b'8x8'
disclosed a bug submitted by
b'mr_k0anti'
b'Open Redirect .8x8.com'
17 Jul 2022
b'Shopify'
disclosed a bug submitted by
b'hydraxanon82'
b'Information disclosure ( Google Sales Channel )'
17 Jul 2022
b'Reddit'
disclosed a bug submitted by
b'sateeshn'
b'Can use the Reddit android app as usual even though revoking the access of it from reddit.com'
16 Jul 2022
b'IBM'
disclosed a bug submitted by
b'mocr7'
b'Insecure Object Permissions for Guest User leads to access to internal documents!'
15 Jul 2022
b'LinkedIn'
disclosed a bug submitted by
b'raajeevrathnam'
b'Add me email address Authentication bypass'
15 Jul 2022
b'MTN Group'
disclosed a bug submitted by
b'shuvam321'
b'POST BASED REFLECTED XSS IN dailydeals.mtn.co.za'
15 Jul 2022
b'Shopify'
disclosed a bug submitted by
b'inhibitor181'
b'[h1-2102] shopApps query from the graphql at /users/api returns all existing created apps, including private ones'
15 Jul 2022
b'GitLab'
disclosed a bug submitted by
b'xanbanx'
b'Stored XSS for Grafana dashboard URL'
13 Jul 2022
1
...
99
100
101
102
103
...
717
BY DENIS WERNER - @NOBBD -
IMPRESSUM