REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Stripe'
disclosed a bug submitted by
b'haxatron1'
b'Bypass global deny-lists by wrapping domains using "[]" in https://github.com/stripe/smokescreen'
18 May 2022
b'Phabricator'
disclosed a bug submitted by
b'dyls'
b'Conduit feed.publish API allows you to spoof other users or make it look like you have access to a restricted object'
18 May 2022
b'Glovo'
disclosed a bug submitted by
b'0f1c3r'
b'Integer overflow vulnerability '
17 May 2022
b'lemlist'
disclosed a bug submitted by
b'omarelfarsaoui'
b'[app.lemlist.com] Improper handling of payment lead to bypass payment'
17 May 2022
b'TikTok'
disclosed a bug submitted by
b'naaash'
b'Privilege Escalation on TikTok for Business'
16 May 2022
b'Automattic'
disclosed a bug submitted by
b'sawrav-chowdhury'
b" Site information's Display Name section vulnerable for XSS attacks and HTML Injections."
16 May 2022
b'lemlist'
disclosed a bug submitted by
b'mr23r0'
b'Security misconfiguration '
16 May 2022
b'curl'
disclosed a bug submitted by
b'sybr'
b'CVE-2022-27781: CERTINFO never-ending busy-loop'
16 May 2022
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'albertspedersen'
b'HTTP Request Smuggling in Transform Rules using hexadecimal escape sequences in the concat() function'
16 May 2022
b'SMTP2GO BBP'
disclosed a bug submitted by
b'mrrobot2050'
b'Origin IP found, WAF Cloudflare Bypass'
15 May 2022
b'curl'
disclosed a bug submitted by
b'iylz'
b'Credential leak on redirect'
14 May 2022
b'Shopify'
disclosed a bug submitted by
b'zambo'
b'Disclose STUFF member name and make actions.'
14 May 2022
b'Shopify'
disclosed a bug submitted by
b'zambo'
b'Disclose customer orders details by shopify chat application.'
14 May 2022
b'Consensys'
disclosed a bug submitted by
b'polem4rch'
b'Public Postman Api Collection Leaks Internal access to https://assets-paris-dev.codefi.network/ '
14 May 2022
b'MTN Group'
disclosed a bug submitted by
b'ibrahimatix0x01'
b'Download full backup [Mtn.co.rw]'
14 May 2022
b'curl'
disclosed a bug submitted by
b'iylz'
b'error parse uri path in curl'
13 May 2022
b'curl'
disclosed a bug submitted by
b'pappacoda'
b'Memory leak in CURLOPT_XOAUTH2_BEARER'
13 May 2022
b'curl'
disclosed a bug submitted by
b'nyymi'
b'Cookie injection from non-secure context'
13 May 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'luchua'
b'[Java] CWE-016: Query to detect insecure configuration of Spring Boot Actuator'
13 May 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'[CPP]: Add query for CWE-754: Improper Check for Unusual or Exceptional Conditions when using functions scanf '
13 May 2022
1
...
133
134
135
136
137
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM