REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'LinkedIn'
disclosed a bug submitted by
b'sachin_kumar_'
b'Can access the job name, creator name and can report any draft/under review/rejected job'
20 Jul 2022
b'8x8'
disclosed a bug submitted by
b'shuvam321'
b'LFI via Jolokia at https://...:1293'
20 Jul 2022
b'Acronis'
disclosed a bug submitted by
b'thewikiii'
b'HTML Injection in E-mail Not Resolved ()'
19 Jul 2022
b'Stripe'
disclosed a bug submitted by
b'tabaahi'
b'Without verifying email and activate account, user can perform all action which are not supposed to be done'
18 Jul 2022
b'EXNESS'
disclosed a bug submitted by
b'omer'
b'subdomain takeover at odoo-staging.exness.io'
18 Jul 2022
b'Acronis'
disclosed a bug submitted by
b'second_grade_pentester'
b'unauth mosquitto ( client emails, ips, license keys exposure )'
18 Jul 2022
b'OneWeb'
disclosed a bug submitted by
b'thewikiii'
b' Cross-site scripting (DOM-based)'
18 Jul 2022
b'8x8'
disclosed a bug submitted by
b'mr_k0anti'
b'CVE-2019-11248 on http://...:9100/debug/pprof/goroutine'
18 Jul 2022
b'8x8'
disclosed a bug submitted by
b'mr_k0anti'
b'Public Apache Tomcat /examples example directory'
18 Jul 2022
b'8x8'
disclosed a bug submitted by
b'mr_k0anti'
b'Open Redirect .8x8.com'
17 Jul 2022
b'Shopify'
disclosed a bug submitted by
b'hydraxanon82'
b'Information disclosure ( Google Sales Channel )'
17 Jul 2022
b'Reddit'
disclosed a bug submitted by
b'sateeshn'
b'Can use the Reddit android app as usual even though revoking the access of it from reddit.com'
16 Jul 2022
b'IBM'
disclosed a bug submitted by
b'mocr7'
b'Insecure Object Permissions for Guest User leads to access to internal documents!'
15 Jul 2022
b'LinkedIn'
disclosed a bug submitted by
b'raajeevrathnam'
b'Add me email address Authentication bypass'
15 Jul 2022
b'MTN Group'
disclosed a bug submitted by
b'shuvam321'
b'POST BASED REFLECTED XSS IN dailydeals.mtn.co.za'
15 Jul 2022
b'Shopify'
disclosed a bug submitted by
b'inhibitor181'
b'[h1-2102] shopApps query from the graphql at /users/api returns all existing created apps, including private ones'
15 Jul 2022
b'GitLab'
disclosed a bug submitted by
b'xanbanx'
b'Stored XSS for Grafana dashboard URL'
13 Jul 2022
b'Node.js'
disclosed a bug submitted by
b'pimterry'
b'Undici does not use CONNECT or otherwise validate upstream HTTPS certificates when using a proxy'
13 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'pimterry'
b'Undici ProxyAgent vulnerable to MITM '
13 Jul 2022
b'Shopify'
disclosed a bug submitted by
b'comwrg'
b'One Click XSS in [www.shopify.com]'
13 Jul 2022
1
...
120
121
122
123
124
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM