REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Internet Bug Bounty'
disclosed a bug submitted by
b'haxatron1'
b'CVE-2022-27779: cookie for trailing dot TLD'
11 Jun 2022
b'TikTok'
disclosed a bug submitted by
b'datph4m'
b'disclosure the live_analytics information of any livestream.'
11 Jun 2022
b'TikTok'
disclosed a bug submitted by
b'noob_but_cut3'
b'Email address disclosure via invite token validatiion'
11 Jun 2022
b'PlayStation'
disclosed a bug submitted by
b'theflow0'
b'bd-j exploit chain'
10 Jun 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'tmz900'
b'RXSS on '
10 Jun 2022
b'Nextcloud'
disclosed a bug submitted by
b'michag86'
b'Moderator can enable cam/mic remotely if cam/mic-permission was disabled while user has activated cam/mic'
09 Jun 2022
b'curl'
disclosed a bug submitted by
b'ddme'
b'Integer overflows in unescape_word()'
09 Jun 2022
b'curl'
disclosed a bug submitted by
b'maslahhunter'
b'match'
09 Jun 2022
b'Reddit'
disclosed a bug submitted by
b'3amii'
b'Several Subdomains Takeover'
08 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'ooooooo_q'
b"XSS by clicking Jira's link"
08 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'ehhthing'
b'Gitlab Pages token theft using service workers'
08 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'"External status checks" can be accepted by users below developer access if the user is either author or assignee of the target merge request'
08 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'jarij'
b'Stored XSS on issue comments and other pages which contain notes'
08 Jun 2022
b'Glassdoor'
disclosed a bug submitted by
b'0x7'
b'Reflected XSS on https://www.glassdoor.com/parts/header.htm'
08 Jun 2022
b'Glassdoor'
disclosed a bug submitted by
b'0x7'
b'Reflected XSS on https://help.glassdoor.com/gd_requestsubmitpage'
08 Jun 2022
b'Glassdoor'
disclosed a bug submitted by
b'0x7'
b'Open redirect on https://www.glassdoor.com/profile/siwa.htm via state parameter'
08 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'saltyyolk'
b'Path traversal, to RCE'
07 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'saltyyolk'
b'Steal private objects of other projects via project import'
07 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'saltyyolk'
b'Private objects exposed through project import'
07 Jun 2022
b'GitLab'
disclosed a bug submitted by
b'saltyyolk'
b'Path traversal in Nuget Package Registry'
07 Jun 2022
1
...
126
127
128
129
130
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM