REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'CPP: Add query for CWE-377 Insecure Temporary File'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'luchua'
b'[Java]: CWE-200 - Query to detect insecure WebResourceResponse implementation'
30 Mar 2022
b'Stripo Inc'
disclosed a bug submitted by
b'whoisbinit'
b'Upload Profile Photo in any folder you want with any extension you want'
30 Mar 2022
b'Stripo Inc'
disclosed a bug submitted by
b'andformod'
b'Insecure Storage and Overly Permissive API Keys'
30 Mar 2022
b'Stripo Inc'
disclosed a bug submitted by
b'0xkira'
b'Ability to use premium templates as free user via https://stripo.email/templates/?utm_source=viewstripo&utm_medium=referral'
30 Mar 2022
b'Twitter'
disclosed a bug submitted by
b'aymen_mansour'
b'Identify the mobile number of a twitter user'
29 Mar 2022
b'Evernote'
disclosed a bug submitted by
b'hulkvision_'
b'2 click Remote Code execution in Evernote Android'
29 Mar 2022
b'curl'
disclosed a bug submitted by
b'jenny'
b'Denial of Service vulnerability in curl when parsing MQTT server response'
28 Mar 2022
b'Shopify'
disclosed a bug submitted by
b'0xd0m7'
b'EC2 Takeover at turn.shopify.com'
28 Mar 2022
b'Basecamp'
disclosed a bug submitted by
b'danielllewellyn'
b'Able to steal bearer token from deep link'
27 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'rupachandransangothi'
b'OTP reflecting in response sensitive data exposure leads to account take over'
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'pranto_0'
b'No Rate Limit on forgot password page'
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'ww1'
b'Password reset token leakage'
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'ww1'
b'Missing Validation in editing "Your Phone Number" '
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'ww1'
b'Password Reuse'
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'ww1'
b'Outdated Copyright Message @ Welcome email'
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'rupachandransangothi'
b'No rate Limit on Password Reset page on upchieve'
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'sara346'
b'Clickjacking login page of https://hackers.upchieve.org/login'
26 Mar 2022
b'UPchieve'
disclosed a bug submitted by
b'bd10ceb041a5297f881137c'
b'No Rate Limiting for Password Reset Email Leads to Email Flooding'
26 Mar 2022
b'Alohi'
disclosed a bug submitted by
b'shamim_12__'
b'Misconfigured Rate Limit at app.sign.plus/forgot_password'
25 Mar 2022
1
...
118
119
120
121
122
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM