REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Shopify'
disclosed a bug submitted by
b'ngalog'
b'staffOrderNotificationSubscriptionCreate Is Not Blocked Entirely From Staff Member With Settings Permission'
09 Feb 2022
b'Zomato'
disclosed a bug submitted by
b'0xdexter'
b'Race condition in User comments Likes'
09 Feb 2022
b'TikTok'
disclosed a bug submitted by
b'imran_nisar'
b'Reflected xss on ads.tiktok.com using `from` parameter.'
09 Feb 2022
b'Acronis'
disclosed a bug submitted by
b'quadrant'
b'Cross-site Scripting (XSS) - Stored | forum.acronis.com'
08 Feb 2022
b'Acronis'
disclosed a bug submitted by
b'h4x0r_dz'
b'Stored Cross-site Scripting on devicelock.com/forum/'
08 Feb 2022
b'Acronis'
disclosed a bug submitted by
b'ashmek'
b'Subdomains takeover of register.acronis.com, promo.acronis.com, info.acronis.com and promosandbox.acronis.com'
08 Feb 2022
b'Acronis'
disclosed a bug submitted by
b'h4x0r_dz'
b'Attacker Can Access to any Ticket Support on https://www.devicelock.com/support/'
08 Feb 2022
b'Acronis'
disclosed a bug submitted by
b'h4x0r_dz'
b'Information Disclosure via ZIP file on AWS Bucket [http://acronis.1.s3.amazonaws.com]'
08 Feb 2022
b'Reddit'
disclosed a bug submitted by
b'e100_speaks'
b'Application level DOS at Login Page ( Accepts Long Password )'
07 Feb 2022
b'Nextcloud'
disclosed a bug submitted by
b'rohitburke'
b'Leaking sensitive information through JSON file path.'
07 Feb 2022
b'Rocket.Chat'
disclosed a bug submitted by
b'sectex'
b'Arbitrary file read in Rocket.Chat-Desktop'
06 Feb 2022
b'IBM'
disclosed a bug submitted by
b'smokin-ac3z'
b'Reflected XSS and Blind out of band command injection at subdomain dstuid-ww.dst.ibm.com'
04 Feb 2022
b'Ruby'
disclosed a bug submitted by
b'chinarulezzz'
b"'net/http': HTTP Header Injection in the set_content_type method"
04 Feb 2022
b'8x8'
disclosed a bug submitted by
b'0daystolive'
b'Remote Code Execution on .8x8.com via .NET VSTATE Deserialization'
03 Feb 2022
b'OneWeb'
disclosed a bug submitted by
b'aman420'
b'text injection and content spoofing'
03 Feb 2022
b'Engel & V\xc3\xb6lkers Technology GmbH'
disclosed a bug submitted by
b'pl4gue_shell'
b'Reflected Xss in https://world.engelvoelkers.com/...'
03 Feb 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ooooooo_q'
b'Ruby CVE-2021-41819: Cookie Prefix Spoofing in CGI::Cookie.parse'
03 Feb 2022
b'TikTok'
disclosed a bug submitted by
b'lu3ky-13'
b'Multiple vulnerability leading to account takeover in TikTok SMB subdomain.'
02 Feb 2022
b'ExpressionEngine'
disclosed a bug submitted by
b'khoabda1'
b'SQL injection at /admin.php?/cp/members/create'
01 Feb 2022
b'Brave Software'
disclosed a bug submitted by
b'kkarfalcon'
b'Information disclosure-Referer leak'
01 Feb 2022
1
...
146
147
148
149
150
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM