REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Kubernetes'
disclosed a bug submitted by
b'0xlegendkiller'
b'Broken Domain Link Takeover from kubernetes.io docs'
03 Apr 2022
b'Stripe'
disclosed a bug submitted by
b'd_sharad'
b'CSRF token validation system is disabled on Stripe Dashboard'
02 Apr 2022
b'Slack'
disclosed a bug submitted by
b'kadusantiago'
b'Workspace configuration metadata disclosure'
01 Apr 2022
b'Sifchain'
disclosed a bug submitted by
b'hrdfrdh'
b'Subdomain Takeover on proxies.sifchain.finance pointing to vercel'
01 Apr 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'happyhacking123'
b'CVE-2022-24288: Apache Airflow: TWO RCEs in example DAGs'
01 Apr 2022
b'TikTok'
disclosed a bug submitted by
b'arifmkhls'
b'Information Leakage via TikTok Ads Web Cache Deception'
31 Mar 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'Stored XSS in merge request creation page through payload in approval rule name'
31 Mar 2022
b'Judge.me '
disclosed a bug submitted by
b'glister'
b'IDOR: leak buyer info & Publish/Hide foreign comments'
31 Mar 2022
b'Judge.me '
disclosed a bug submitted by
b'glister'
b'Stored XSS in Question edit from product name'
31 Mar 2022
b'Judge.me '
disclosed a bug submitted by
b'glister'
b'stored XSS on AliExpress Review Importer/Products when delete product'
31 Mar 2022
b'Judge.me '
disclosed a bug submitted by
b'glister'
b'Stored XSS in Question edit for product name (bypass #1416672)'
31 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'ihsinme: CPP Add a query to find incorrectly used exceptions. '
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'jessforfun'
b'[Python]: Add shutil module sinks for path injection query'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'artem'
b'Java: An experimental query for ignored hostname verification'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'luchua'
b'[Java]: CWE-073 - File path injection with the JFinal framework'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'CPP: Add query for CWE-266 Incorrect Privilege Assignment'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'luchua'
b'[C#] CWE-759: Query to detect password hash without a salt'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'porcupineyhairs'
b'Java : Add query to detect Server Side Template Injection (SSTI)'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'museljh'
b'Python: CWE-338 insecureRandomness'
30 Mar 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'farid_hunter'
b'[Java]: Timing attacks while comparing the headers value'
30 Mar 2022
1
...
129
130
131
132
133
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM