REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'mik-patient'
b'Suspicious login app ships old league/flysystem version'
08 Feb 2023
b'Hyperledger'
disclosed a bug submitted by
b'r3drush'
b'Dependency confusion in https://github.com/hyperledger/aries-mobile-agent-react-native '
07 Feb 2023
b'Yelp'
disclosed a bug submitted by
b'ilpadrino'
b'Fraudulent claim of business.'
06 Feb 2023
b'Nextcloud'
disclosed a bug submitted by
b'supr4s'
b'Mail app - blind SSRF via smtpHost parameter'
06 Feb 2023
b'Nextcloud'
disclosed a bug submitted by
b'supr4s'
b'Mail app - Blind SSRF via Sierve server fonctionnality and sieveHost parameter'
06 Feb 2023
b'Nextcloud'
disclosed a bug submitted by
b'supr4s'
b'Mail app - blind SSRF via imapHost parameter'
06 Feb 2023
b'JetBlue'
disclosed a bug submitted by
b'doosec101'
b'Open Redirection'
05 Feb 2023
b'JetBlue'
disclosed a bug submitted by
b'doosec101'
b'Access to tomcat-manager with default creds'
05 Feb 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'kurohiro'
b'CVE-2022-43551: Another HSTS bypass via IDN'
03 Feb 2023
b'Sorare'
disclosed a bug submitted by
b'gokulsk'
b'Mystery with a leaked token and Reusability of email confirmation link leading to Account Takeover'
03 Feb 2023
b'TikTok'
disclosed a bug submitted by
b'amans'
b'TikTok 2FA Bypass'
03 Feb 2023
b'Shopify'
disclosed a bug submitted by
b'kannthu'
b'XSS at jamfpro.shopifycloud.com'
02 Feb 2023
b'Judge.me '
disclosed a bug submitted by
b'penguinshelp'
b'Self-XSS due to image URL can be eploited via XSSJacking techniques in review email'
01 Feb 2023
b'Judge.me '
disclosed a bug submitted by
b'criptex'
b'HTML INJECTION (STORED)'
01 Feb 2023
b'Judge.me '
disclosed a bug submitted by
b'penguinshelp'
b'Improper Access Control in Ali Express Importer'
01 Feb 2023
b'Judge.me '
disclosed a bug submitted by
b'vj1naruto'
b'Stored XSS in Public Profile Reviews'
01 Feb 2023
b'Shopify'
disclosed a bug submitted by
b'irisrumtub'
b'Stored XSS in SVG file as data: url'
31 Jan 2023
b'JetBlue'
disclosed a bug submitted by
b'mmdz'
b'Open Redirect at blueonboardingqa1.jetblue.com'
29 Jan 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'haqpl'
b'Rails ActionView sanitize helper bypass leading to XSS using SVG tag.'
29 Jan 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'theinternetofdefcon_'
b'[U.S. Air Force] Information disclosure due unauthenticated access to APIs and system browser functions'
27 Jan 2023
1
...
114
115
116
117
118
...
759
BY DENIS WERNER - @NOBBD -
IMPRESSUM