REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'TikTok'
disclosed a bug submitted by
b'datph4m'
b'Add products to any livestream.'
21 Sep 2022
b'TikTok'
disclosed a bug submitted by
b'datph4m'
b'Create product discounts of any shop'
21 Sep 2022
b'PlayStation'
disclosed a bug submitted by
b'theflow0'
b'size_t-to-int vulnerability in exFAT leads to memory corruption via malformed USB flash drives'
21 Sep 2022
b'Mattermost'
disclosed a bug submitted by
b'catenacyber'
b'DOS: out of memory from gif through upload api'
21 Sep 2022
b'TikTok'
disclosed a bug submitted by
b'apapedulimu'
b'IDOR on Tagged People'
20 Sep 2022
b'PlayStation'
disclosed a bug submitted by
b'theflow0'
b'Use-after-free in setsockopt IPV6_2292PKTOPTIONS (CVE-2020-7457)'
20 Sep 2022
b'Vanilla'
disclosed a bug submitted by
b'admin0x00'
b'CORS Misconfiguration on vanillaforums.com '
20 Sep 2022
b'MTN Group'
disclosed a bug submitted by
b'sachinrajput'
b'There is no rate limit for SME REGISTRATION PORTAL'
19 Sep 2022
b'HackerOne'
disclosed a bug submitted by
b'mega7'
b'HTML Injection in email via Name field'
18 Sep 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'nyymi'
b'Airflow Daemon Mode Insecure Umask Privilege Escalation'
17 Sep 2022
b'Glassdoor'
disclosed a bug submitted by
b'seifelsallamy'
b'XSS in www.glassdoor.com'
16 Sep 2022
b'Nextcloud'
disclosed a bug submitted by
b'tomorrowisnew_'
b'SSRF via potential filter bypass with too lax local domain checking'
16 Sep 2022
b'Nextcloud'
disclosed a bug submitted by
b'daniel_calvino_sanchez'
b'Last video frame is still sent after video is disabled in a call'
16 Sep 2022
b'Nextcloud'
disclosed a bug submitted by
b'ro0telqayser'
b'Information exposure in in guzzlehttp/guzzle (https://github.com/nextcloud/3rdparty/tree/master/guzzlehttp/guzzle)'
16 Sep 2022
b'Shopify'
disclosed a bug submitted by
b'xenx'
b'store internal email disclosed through shopify-data-exporter '
15 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'cdl'
b'[hta3] Remote Code Execution on https:// via improper access control to SCORM Zip upload/import'
15 Sep 2022
b'Linktree'
disclosed a bug submitted by
b'bug_vs_me'
b'No validation to Image upload user can upload ( php APK zip files and can be used as storage purpose)'
15 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'shreky'
b'STORED XSS in /nlc/login.aspx via "edit" GET parameter through markdown editor [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'malcolmx'
b'time based SQL injection at [https://] [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'malcolmx'
b'SQL injection at [] [HtUS]'
14 Sep 2022
1
...
103
104
105
106
107
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM