REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fuomag9'
b'Website vulnerable to POODLE (SSLv3) with expired certificate'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'hemantsolo'
b'Password Reset link hijacking via Host Header Poisoning leads to account takeover'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'chron0x_'
b'Reflected XSS on '
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'chron0x_'
b'Reflected XSS on '
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nirajgautamit'
b'Reflected XSS in https:// via "" parameter'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mysteryengine'
b'Read-only path traversal (CVE-2020-3452) at https://'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mysteryengine'
b'Read-only path traversal (CVE-2020-3452) at https://'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'frenchvlad'
b'Improper Access Control - Generic on https://'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'frenchvlad'
b'External Service Interaction (HTTP/DNS) on https://www. ( parameter)'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'frenchvlad'
b'XML Injection on https://www. ( parameter)'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mysteryengine'
b'Read-only path traversal (CVE-2020-3452) at https://.mil'
02 Apr 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'chron0x_'
b'Reflected XSS on '
02 Apr 2021
b'Kubernetes'
disclosed a bug submitted by
b'sml555'
b'KOPS documentation references domains which were not registered'
02 Apr 2021
b'Clario'
disclosed a bug submitted by
b'br33z3'
b'Google API key leaks and security misconfiguration leads Open Redirect Vulnerability'
01 Apr 2021
b'HackerOne'
disclosed a bug submitted by
b'updatelap'
b'HackerOne Jira integration plugin Leaked JWT to unauthorized jira users'
01 Apr 2021
b'Kubernetes'
disclosed a bug submitted by
b'bradgeesaman'
b'API Server DoS (crash?) if many large resources (~1MB each) are concurrently/repeatedly sent to an external Validating WebHook endpoint'
01 Apr 2021
b'Kubernetes'
disclosed a bug submitted by
b'danielsagi'
b'Kubelet follows symlinks as root in /var/log from the /logs server endpoint '
01 Apr 2021
b'Rockstar Games'
disclosed a bug submitted by
b'netfuzzer'
b'SocialClub Account Take Over Through Import Friends feature'
01 Apr 2021
b'Moneybird'
disclosed a bug submitted by
b'bugera'
b'Access control issue on invoice documents downloading feature.'
01 Apr 2021
b'Kaspersky'
disclosed a bug submitted by
b'theevilbit'
b'KIS for macOS is vulnerable to AV bypass due to improper client authorization on XPC service'
01 Apr 2021
1
...
211
212
213
214
215
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM