REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'GitHub Security Lab'
disclosed a bug submitted by
b'jorgectf'
b'PYTHON: CWE-079 - Add query for email injection'
05 Oct 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'smehta23'
b'[JAVA]: Partial Path Traversal'
05 Oct 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'luchua'
b'[Java]: CWE-625 - Query to detect regex dot bypass'
05 Oct 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'[CPP]: Add query for CWE-297: Improper Validation of Certificate with Host Mismatch'
05 Oct 2022
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'ydvanjali'
b'Bypass two-factor authentication'
04 Oct 2022
b'Reddit'
disclosed a bug submitted by
b'ahacker1'
b"Reddit talk promotion offers don't expire, allowing users to accept them after being demoted"
03 Oct 2022
b'Informatica'
disclosed a bug submitted by
b'isumitpatel'
b'jira discloser information '
03 Oct 2022
b'Nextcloud'
disclosed a bug submitted by
b'bjoernv'
b'Generated passwords are not fully validated by HIBPValidator'
01 Oct 2022
b'TikTok'
disclosed a bug submitted by
b'ckerha'
b'Bypassing authorization of linked Instagram account'
30 Sep 2022
b'Reddit'
disclosed a bug submitted by
b'lu3ky-13'
b'Open Redirect on www.redditinc.com via `failed` query param bypass after fixed bug #1257753'
30 Sep 2022
b'Reddit'
disclosed a bug submitted by
b'criptex'
b'IDOR allows an attacker to modify the links of any user'
30 Sep 2022
b'Reddit'
disclosed a bug submitted by
b'heckintosh'
b'Unrestricted File Upload on reddit.secure.force.com'
30 Sep 2022
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'path_network'
b'Lack of Packet Sanitation in Goflow Results in Multiple DoS Attack Vectors and Bugs'
30 Sep 2022
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'lohigowda'
b'Password Policy Restriction Bypass'
30 Sep 2022
b'Flickr'
disclosed a bug submitted by
b'stevejubs'
b'Open Redirect'
29 Sep 2022
b'Yelp'
disclosed a bug submitted by
b'irfadps'
b'no rate limit in forgot password session'
29 Sep 2022
b'Judge.me '
disclosed a bug submitted by
b'penguinshelp'
b'XSS in Widget Review Form Preview in settings'
29 Sep 2022
b'Slack'
disclosed a bug submitted by
b'security_warrior'
b'CSV export/import functionality allows administrators to modify member and message content of a workspace'
28 Sep 2022
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'albertspedersen'
b'Take over subdomains of r2.dev using R2 custom domains'
28 Sep 2022
b'Node.js'
disclosed a bug submitted by
b'zeyu2001'
b'DNS rebinding in --inspect (insufficient fix of CVE-2022-32212 affecting macOS devices)'
28 Sep 2022
1
...
109
110
111
112
113
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM