REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'geekysherlock'
b'Sensitive files/ data exists post deletion of user account'
20 May 2022
b'8x8'
disclosed a bug submitted by
b'huntinex'
b'8x8pilot.com: Reflected XSS in Apache Tomcat /jsp-examples example directory'
19 May 2022
b'GitLab'
disclosed a bug submitted by
b'kannthu'
b'Stored XSS in repository file viewer'
19 May 2022
b'Slack'
disclosed a bug submitted by
b'smitgharat0001'
b'Email html Injection'
19 May 2022
b'TikTok'
disclosed a bug submitted by
b'cancerz'
b'XSS and iframe injection on tiktok ads portal using redirect params'
19 May 2022
b'Stripe'
disclosed a bug submitted by
b'haxatron1'
b'Bypass global deny-lists by wrapping domains using "[]" in https://github.com/stripe/smokescreen'
18 May 2022
b'Phabricator'
disclosed a bug submitted by
b'dyls'
b'Conduit feed.publish API allows you to spoof other users or make it look like you have access to a restricted object'
18 May 2022
b'Glovo'
disclosed a bug submitted by
b'0f1c3r'
b'Integer overflow vulnerability '
17 May 2022
b'lemlist'
disclosed a bug submitted by
b'omarelfarsaoui'
b'[app.lemlist.com] Improper handling of payment lead to bypass payment'
17 May 2022
b'TikTok'
disclosed a bug submitted by
b'naaash'
b'Privilege Escalation on TikTok for Business'
16 May 2022
b'Automattic'
disclosed a bug submitted by
b'sawrav-chowdhury'
b" Site information's Display Name section vulnerable for XSS attacks and HTML Injections."
16 May 2022
b'lemlist'
disclosed a bug submitted by
b'mr23r0'
b'Security misconfiguration '
16 May 2022
b'curl'
disclosed a bug submitted by
b'sybr'
b'CVE-2022-27781: CERTINFO never-ending busy-loop'
16 May 2022
b'Cloudflare Public Bug Bounty'
disclosed a bug submitted by
b'albertspedersen'
b'HTTP Request Smuggling in Transform Rules using hexadecimal escape sequences in the concat() function'
16 May 2022
b'SMTP2GO BBP'
disclosed a bug submitted by
b'mrrobot2050'
b'Origin IP found, WAF Cloudflare Bypass'
15 May 2022
b'curl'
disclosed a bug submitted by
b'iylz'
b'Credential leak on redirect'
14 May 2022
b'Shopify'
disclosed a bug submitted by
b'zambo'
b'Disclose STUFF member name and make actions.'
14 May 2022
b'Shopify'
disclosed a bug submitted by
b'zambo'
b'Disclose customer orders details by shopify chat application.'
14 May 2022
b'Consensys'
disclosed a bug submitted by
b'polem4rch'
b'Public Postman Api Collection Leaks Internal access to https://assets-paris-dev.codefi.network/ '
14 May 2022
b'MTN Group'
disclosed a bug submitted by
b'ibrahimatix0x01'
b'Download full backup [Mtn.co.rw]'
14 May 2022
1
...
143
144
145
146
147
...
752
BY DENIS WERNER - @NOBBD -
IMPRESSUM