REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'QIWI'
disclosed a bug submitted by
b'wdahlenb'
b'HTTP Request Smuggling on api.flocktory.com Leads to XSS on Customer Sites'
29 Sep 2021
b'Mail.ru'
disclosed a bug submitted by
b'uddeshaya001'
b'[ii.worki.ru ] emarsys subdomain takeover'
28 Sep 2021
b'MTN Group'
disclosed a bug submitted by
b'devhug'
b'[mtn.com.af] Multiple vulnerabilities allow to Application level DoS'
28 Sep 2021
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ouyang'
b'CVE-2021-3711: SM2 decrypt buffer overflow '
27 Sep 2021
b'Localize'
disclosed a bug submitted by
b'thd3r7'
b'Stored XSS in Document Title'
27 Sep 2021
b'Tor'
disclosed a bug submitted by
b'sickcodes'
b'Tor Browser using --log or --verbose logs the exact connection time a client connects to any v2 domains.'
27 Sep 2021
b'DuckDuckGo'
disclosed a bug submitted by
b'webklex'
b'com.duckduckgo.mobile.android - Cache corruption'
26 Sep 2021
b'MTN Group'
disclosed a bug submitted by
b'alimanshester'
b'Reflected Cross-Site scripting in : mtn.bj'
26 Sep 2021
b'QIWI'
disclosed a bug submitted by
b'lalit2020'
b'CVE-2020-3187 - unauthenticated arbitrary file deletion in Cisco'
24 Sep 2021
b'Brave Software'
disclosed a bug submitted by
b'bhatiagaurav1211'
b'unclaimed s3 bucket takeover in the 3 js file located on the github page of brave software'
24 Sep 2021
b'Redtube'
disclosed a bug submitted by
b'kevsecurity'
b'Deserialization of untrusted data at https://www.redtube.com/media/hls?s=data'
24 Sep 2021
b'Concrete CMS'
disclosed a bug submitted by
b'egix'
b'Phar Deserialization Vulnerability via Logging Settings'
24 Sep 2021
b'curl'
disclosed a bug submitted by
b'monnerat'
b'CVE-2021-22946: Protocol downgrade required TLS bypassed'
24 Sep 2021
b'curl'
disclosed a bug submitted by
b'monnerat'
b'CVE-2021-22947: STARTTLS protocol injection via MITM'
24 Sep 2021
b'GitLab'
disclosed a bug submitted by
b'maruthi12'
b'Guest Users can create issues for Sentry errors and track their status'
24 Sep 2021
b'LINE'
disclosed a bug submitted by
b'lynx_vn'
b'DoS of LINE client for Android via message containing multiple unicode characters (0x0e & 0x0f)'
24 Sep 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'[Python] CWE-522: Insecure LDAP Authentication'
23 Sep 2021
b'Nextcloud'
disclosed a bug submitted by
b'rtod'
b'End to end encryption public key is not properly verified on Desktop and Android'
23 Sep 2021
b'Nextcloud'
disclosed a bug submitted by
b'rtod'
b'Clients do not verify server public key'
23 Sep 2021
b'Myndr'
disclosed a bug submitted by
b'azimuthub'
b'No Rate Limit On dashboard.myndr.net/auth'
23 Sep 2021
1
...
147
148
149
150
151
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM