REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'MTN Group'
disclosed a bug submitted by
b'lu3ky-13'
b'Reflected XSS on gamesclub.mtn.com.g'
24 May 2021
b'MTN Group'
disclosed a bug submitted by
b'lu3ky-13'
b'Reflected XSS on mtnhottseat.mtn.com.gh'
24 May 2021
b'VK.com'
disclosed a bug submitted by
b'executor'
b'CSRF .'
23 May 2021
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'fr33rh'
b'View Only to Root Privilege Escalation on UniFi Protect'
23 May 2021
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'fr33rh'
b'SNMP Community String Disclosure to ReadOnly Users on EdgeSwitch'
23 May 2021
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'fr33rh'
b'Readonly to Root Privilege Escalation on EdgeSwitch'
23 May 2021
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'fr33rh'
b'Web Server Predictable Session ID on EdgeSwitch '
23 May 2021
b'QIWI'
disclosed a bug submitted by
b'myway'
b'SSRF https://qiwi.com "Prerender HAR Capturer"'
22 May 2021
b'BlockFi'
disclosed a bug submitted by
b'tcbutler320'
b'User Information Disclosure via waitlist.blockfi.com Prefinery Abuse'
21 May 2021
b'GitLab'
disclosed a bug submitted by
b'ledz1996'
b'Kroki Arbitrary File Read/Write '
21 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'jorgectf'
b'[Python] CWE-400: Regular Expression Injection'
21 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'p0wn4j'
b'[Java] CWE-078: Add JSch lib OS Command Injection sink'
21 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'jessforfun'
b'[Java]: CWE-601 Spring url redirection detect'
21 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'luchua'
b'[Java] CWE-094: Jython code injection'
21 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'luchua'
b'[Java] CWE-094: Rhino code injection'
21 May 2021
b'Kaspersky'
disclosed a bug submitted by
b'golim'
b'Several domains on kaspersky.com are vulnerable to Web Cache Deception attack'
20 May 2021
b'U.S. General Services Administration'
disclosed a bug submitted by
b'rajeshpatil'
b'Weak password policy leading to exposure of administrator account access'
20 May 2021
b'QIWI'
disclosed a bug submitted by
b'sniper302'
b'Account takeover just through csrf in https://booking.qiwi.kz/profile'
20 May 2021
b'Lark Technologies'
disclosed a bug submitted by
b'imran_nisar'
b'Improper Access Control on Lark Footer Feature'
18 May 2021
b'Rocket.Chat'
disclosed a bug submitted by
b'sonarsource'
b'Pre-Auth Blind NoSQL Injection leading to Remote Code Execution'
18 May 2021
1
...
199
200
201
202
203
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM