REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Valve'
disclosed a bug submitted by
b'gamer7112'
b'Specially Crafted Closed Captions File can lead to Remote Code Execution in CS:GO and other Source Games'
05 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'ihsinme: CPP Add query for CWE-691 Insufficient Control Flow Management When Using Bit Operations'
04 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'p0wn4j'
b'[Java] CWE-094: Query to detect Groovy Code Injections'
04 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'jessforfun'
b'Java: JSONP Injection'
04 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'artem'
b'[Java] Query for detecting Jakarta Expression Language injections'
04 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'[Java] CWE-348: Use of less trusted source'
04 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'ihsinme: CPP Add query for CWE-691 Insufficient Control Flow Management After Refactoring The Code'
04 May 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'[JAVA]: CWE-347 - Improper Verification of Cryptographic Signature : Potential for Auth Bypass'
04 May 2021
b'Valve'
disclosed a bug submitted by
b'pixelindigo'
b'GoldSrc: Buffer Overflow in DELTA_ParseDelta function leads to RCE'
04 May 2021
b'Valve'
disclosed a bug submitted by
b'nyancat0131'
b'[GoldSrc] Remote Code Execution using malicious WAD list in BSP file'
04 May 2021
b'Valve'
disclosed a bug submitted by
b'slidybat'
b'OOB reads in network message handlers leads to RCE'
04 May 2021
b'Flickr'
disclosed a bug submitted by
b'sector035'
b'Improper access control in place for "member only" groups via root.YUI_config.flickr.api.site_key'
03 May 2021
b'Flickr'
disclosed a bug submitted by
b'xparrot'
b'Stored open redirect in about page'
03 May 2021
b'Moneybird'
disclosed a bug submitted by
b'cityzen0x'
b'No rate Limit'
03 May 2021
b'Pornhub'
disclosed a bug submitted by
b'iamthefrogy'
b'[xss, pornhub.com] /, multiple parameters'
02 May 2021
b'8x8'
disclosed a bug submitted by
b'ian'
b'Subdomain takeover of .wavecell.com'
02 May 2021
b'Kubernetes'
disclosed a bug submitted by
b'r44mb00'
b'Code Injection via Insecure Yaml.load'
01 May 2021
b'Open-Xchange'
disclosed a bug submitted by
b'zhutyra'
b'SSRF - Unchecked Snippet IDs for distributed files'
01 May 2021
b'Open-Xchange'
disclosed a bug submitted by
b'zhutyra'
b'XSS - Calendar - Unescaped common name of appointment participant'
01 May 2021
b'Open-Xchange'
disclosed a bug submitted by
b'zhutyra'
b'XSS - Notes - Attribute injection through overlapping tags'
01 May 2021
1
...
204
205
206
207
208
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM