REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ricterz'
b'Apache HTTP Server: mod_proxy_ajp: Possible request smuggling'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Read beyond bounds via ap_rwrite() [zhbug_httpd_47.2]'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Read beyond bounds in mod_isapi.c [zhbug_httpd_41]'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Controllable read beyond bounds in lua_websocket_readbytes() [zhbug_httpd_126]'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Read beyond bounds in ap_strcmp_match() [zhbug_httpd_47.7]'
09 Jul 2022
b'Hyperledger'
disclosed a bug submitted by
b'dusty_wormwood'
b'Unauthorized packages modification or secrets exfiltration via GitHub actions'
08 Jul 2022
b'Reddit'
disclosed a bug submitted by
b'kratul'
b'Open Redirect through POST Request in www.redditinc.com'
08 Jul 2022
b'Glovo'
disclosed a bug submitted by
b'mehdisadir'
b'Exposed valid AWS, Mysql, Sendgrid and other secrets'
08 Jul 2022
b'TikTok'
disclosed a bug submitted by
b'rioncool22'
b'Clickjacking Vulnerability In Whole Page Ads Tiktok'
07 Jul 2022
b'Node.js'
disclosed a bug submitted by
b'zeyu2001'
b'HTTP Request Smuggling Due to Flawed Parsing of Transfer-Encoding '
07 Jul 2022
b'Node.js'
disclosed a bug submitted by
b'zeyu2001'
b'HTTP Request Smuggling Due To Improper Delimiting of Header Fields'
07 Jul 2022
b'Node.js'
disclosed a bug submitted by
b'zeyu2001'
b'HTTP Request Smuggling Due to Incorrect Parsing of Multi-line Transfer-Encoding'
07 Jul 2022
b'Omise'
disclosed a bug submitted by
b'sachinrajput'
b'Brute force of a current password on a disable 2fa leads to guess password and disable 2fa.'
07 Jul 2022
b'Hyperledger'
disclosed a bug submitted by
b'fatal0'
b'Remote denial of service in HyperLedger Fabric'
07 Jul 2022
b'SKALE Network'
disclosed a bug submitted by
b'voiddy'
b'Stack Buffer Overflow via `gmp_sprintf`in `BLSSignature` and `BLSSigShare`'
07 Jul 2022
b'Open-Xchange'
disclosed a bug submitted by
b'julezman'
b'Privilege escalation possible in dovecot when similar passdbs are used'
06 Jul 2022
b'Nextcloud'
disclosed a bug submitted by
b'kesselb'
b'Ownership check missing when updating or deleting attachments'
06 Jul 2022
b'Sony'
disclosed a bug submitted by
b'echidonut'
b'Blind User-Agent SQL Injection to Blind Remote OS Command Execution at '
06 Jul 2022
b'Slack'
disclosed a bug submitted by
b'ziot'
b'SSRF via Office file thumbnails'
05 Jul 2022
b'GitLab'
disclosed a bug submitted by
b'ledz1996'
b'Exposure of a valid Gitlab-Workhorse JWT leading to various bad things'
05 Jul 2022
1
...
101
102
103
104
105
...
717
BY DENIS WERNER - @NOBBD -
IMPRESSUM