REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'qj_test'
b'Notification implicit PendingIntent in com.nextcloud.client allows to access contacts'
27 May 2022
b'Uber'
disclosed a bug submitted by
b'ian'
b'Full read SSRF in flyte-poc-us-east4.uberinternal.com'
26 May 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'ashutosh7'
b'[Urgent] Critical Vulnerability [RCE] on vulnerable to Remote Code Execution by exploiting MS15-034, CVE-2015-1635'
26 May 2022
b'U.S. General Services Administration'
disclosed a bug submitted by
b'hollaatm3'
b'Read Other Users Reports Through Cloning'
26 May 2022
b'HackerOne'
disclosed a bug submitted by
b'bugra'
b'Blind XSS in app.pullrequest.com/ via /reviews/ratings/{uuid}'
25 May 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'Stored XSS in Notes (with CSP bypass for gitlab.com)'
25 May 2022
b'Judge.me '
disclosed a bug submitted by
b'caue'
b'Email templates XSS by filterXSS bypass'
25 May 2022
b'Flickr'
disclosed a bug submitted by
b'ian'
b'Critical broken cookie signing on dagobah.flickr.com '
24 May 2022
b'EXNESS'
disclosed a bug submitted by
b'nearsecurity'
b'[com.exness.android.pa Android] Universal XSS in webview. Lead to steal user cookies'
24 May 2022
b'Omise'
disclosed a bug submitted by
b'oblivionlight'
b'Cross-site scripting on dashboard2.omise.co'
24 May 2022
b'Flickr'
disclosed a bug submitted by
b'xlord91'
b'Open redirect bypass'
23 May 2022
b'Flickr'
disclosed a bug submitted by
b'keer0k'
b'Stored XSS in photos_user_map.gne'
23 May 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'farid_hunter'
b'[python]: Zip Slip Vulnerability'
23 May 2022
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'[Java]: Flow sources and steps for JMS and RabbitMQ'
23 May 2022
b'Evernote'
disclosed a bug submitted by
b'cyberworlcload'
b'Email Verification Bypass by bruteforcing when setting up 2FA'
22 May 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'samuelsiv'
b'Possible Domain Takeover on AWS Instance.'
22 May 2022
b'lemlist'
disclosed a bug submitted by
b'ondermedia'
b'Clickjacking at app.lemlist.com'
20 May 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'Arbitrary POST request as victim user from HTML injection in Jupyter notebooks'
20 May 2022
b'Nextcloud'
disclosed a bug submitted by
b'ctulhu'
b'Error in Deleting Deck cards attachment reveals the full path of the website'
20 May 2022
b'Nextcloud'
disclosed a bug submitted by
b'supr4s'
b"Nextcloud Deck : Possibility for anyone to add a stack with existing tasks on anyone's board"
20 May 2022
1
...
142
143
144
145
146
...
752
BY DENIS WERNER - @NOBBD -
IMPRESSUM