REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'njmulsqb'
b'Sensitive data exposure via /secure/QueryComponent!Default.jspa endpoint on '
29 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fdeleite'
b' SSRF due to CVE-2021-27905 in www.'
29 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'null_bytes'
b' vulnerable to CVE-2022-22954'
29 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mido0x0x'
b'Blind SQL Injection'
29 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mido0x0x'
b'SQL INJECTION in https:/// '
29 Apr 2022
b'Nextcloud'
disclosed a bug submitted by
b'igorpyan'
b'Possibility to force an admin to install recommended applications'
29 Apr 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'monnerat'
b'OAUTH2 bearer not-checked for connection re-use'
29 Apr 2022
b'curl'
disclosed a bug submitted by
b'monnerat'
b'CVE-2022-22576: OAUTH2 bearer bypass in connection re-use'
29 Apr 2022
b'Mattermost'
disclosed a bug submitted by
b'thesecuritydev'
b'DoS via large console messages'
29 Apr 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'nyymi'
b'CVE-2022-27776: Auth/cookie leak on redirect'
29 Apr 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'nyymi'
b'CVE-2022-27775: Bad local IPv6 connection reuse'
29 Apr 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'nyymi'
b'CVE-2022-27774: Credential leak on redirect'
29 Apr 2022
b'8x8'
disclosed a bug submitted by
b'bx_1'
b' subdomain takeover (abandoned Zendesk .easycontactnow.com)'
28 Apr 2022
b'GitLab'
disclosed a bug submitted by
b'ec0'
b'Container escape on public GitLab CI runners'
27 Apr 2022
b'curl'
disclosed a bug submitted by
b'nyymi'
b'CVE-2022-27776: Auth/cookie leak on redirect '
27 Apr 2022
b'curl'
disclosed a bug submitted by
b'nyymi'
b'CVE-2022-27775: Bad local IPv6 connection reuse'
27 Apr 2022
b'curl'
disclosed a bug submitted by
b'nyymi'
b'CVE-2022-27774: Credential leak on redirect'
27 Apr 2022
b'Tennessee Valley Authority'
disclosed a bug submitted by
b'yassinek3ch'
b'SQL Injection on https://soa-accp.glbx.tva.gov/ via "/api/" path - VI-21-015'
26 Apr 2022
b'Judge.me '
disclosed a bug submitted by
b'glister'
b'Stored XSS in "product type" field executed via product filters'
26 Apr 2022
b'Basecamp'
disclosed a bug submitted by
b'ian'
b'RCE via exposed JMX server on jabber.37signals.com/jabber.basecamp.com'
26 Apr 2022
1
...
112
113
114
115
116
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM