REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Rocket.Chat'
disclosed a bug submitted by
b'sectex'
b'Arbitrary file read in Rocket.Chat-Desktop'
06 Feb 2022
b'IBM'
disclosed a bug submitted by
b'smokin-ac3z'
b'Reflected XSS and Blind out of band command injection at subdomain dstuid-ww.dst.ibm.com'
04 Feb 2022
b'Ruby'
disclosed a bug submitted by
b'chinarulezzz'
b"'net/http': HTTP Header Injection in the set_content_type method"
04 Feb 2022
b'8x8'
disclosed a bug submitted by
b'0daystolive'
b'Remote Code Execution on .8x8.com via .NET VSTATE Deserialization'
03 Feb 2022
b'OneWeb'
disclosed a bug submitted by
b'aman420'
b'text injection and content spoofing'
03 Feb 2022
b'Engel & V\xc3\xb6lkers Technology GmbH'
disclosed a bug submitted by
b'pl4gue_shell'
b'Reflected Xss in https://world.engelvoelkers.com/...'
03 Feb 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ooooooo_q'
b'Ruby CVE-2021-41819: Cookie Prefix Spoofing in CGI::Cookie.parse'
03 Feb 2022
b'TikTok'
disclosed a bug submitted by
b'lu3ky-13'
b'Multiple vulnerability leading to account takeover in TikTok SMB subdomain.'
02 Feb 2022
b'ExpressionEngine'
disclosed a bug submitted by
b'khoabda1'
b'SQL injection at /admin.php?/cp/members/create'
01 Feb 2022
b'Brave Software'
disclosed a bug submitted by
b'kkarfalcon'
b'Information disclosure-Referer leak'
01 Feb 2022
b'h1-ctf'
disclosed a bug submitted by
b'w31rd0'
b'The Return of the Grinch'
01 Feb 2022
b'h1-ctf'
disclosed a bug submitted by
b'akshansh'
b'Saving Christmas from Grinchy Gods'
01 Feb 2022
b'Dropbox'
disclosed a bug submitted by
b'bugdiscloseguys'
b'Full Response SSRF via Google Drive'
01 Feb 2022
b'VK.com'
disclosed a bug submitted by
b'b4walid'
b'Reflected Xss On https://vk.com/search'
01 Feb 2022
b'Urban Company'
disclosed a bug submitted by
b'ian'
b'Critical full compromise of jarvis-new.urbanclap.com via weak session signing'
30 Jan 2022
b'UPchieve'
disclosed a bug submitted by
b'tomyway'
b'No character limit in password field'
30 Jan 2022
b'Monero'
disclosed a bug submitted by
b'nim4'
b'Misconfiguration in build environment allows DLL preloading attack'
29 Jan 2022
b'Omise'
disclosed a bug submitted by
b'oblivionlight'
b'XSS via X-Forwarded-Host header'
29 Jan 2022
b'Lark Technologies'
disclosed a bug submitted by
b'sirleeroyjenkins'
b'Full read SSRF via Lark Docs `import as docs` feature '
28 Jan 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'Improper access control for users with expired password, giving the user full access through API and Git'
27 Jan 2022
1
...
126
127
128
129
130
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM