REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.ru'
disclosed a bug submitted by
b'organdonor'
b'Disclosure of the account email by phone number on [corporate.city-mobil.ru]'
16 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'organdonor'
b'HTML injection in an email [delivery.city-mobil.ru]'
16 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'kwel'
b' [mcs.mail.ru]'
15 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'kwel'
b"Partner's manager can access statistics of all drivers [city-mobil.ru/taxiserv]"
15 Feb 2021
b'TikTok'
disclosed a bug submitted by
b'ach'
b'External SSRF and Local File Read via video upload due to vulnerable FFmpeg HLS processing'
15 Feb 2021
b'GitLab'
disclosed a bug submitted by
b'anshraj_srivastava'
b'Remote hacker can download all the files of master branch in public projects where everything is members only.'
15 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'r0hack'
b'Account TakeOver at kvartira.city-mobil.ru'
15 Feb 2021
b'8x8'
disclosed a bug submitted by
b'melbadry9'
b'DNS Misconfiguration (Subdomain Takeover) .wavecell.com'
15 Feb 2021
b'Automattic'
disclosed a bug submitted by
b'sodium_'
b'Stored XSS in Intense Debate comment system'
14 Feb 2021
b'Nextcloud'
disclosed a bug submitted by
b'sanmue'
b'External Storage - WebDAV - New user has access to storage from deleted user (same user-ID)'
14 Feb 2021
b'Nextcloud'
disclosed a bug submitted by
b'nihad4u'
b'DoS attack against the client when entering a long password'
14 Feb 2021
b'Nextcloud'
disclosed a bug submitted by
b'stefanniedermann'
b'New users can read all Nextcloud Deck data from previous user with same username'
14 Feb 2021
b'Nextcloud'
disclosed a bug submitted by
b'jackzhou'
b'xss on setup config page '
14 Feb 2021
b'Nextcloud'
disclosed a bug submitted by
b'mik317'
b'Content spoofing on https://surveyserver.nextcloud.com'
14 Feb 2021
b'WHO COVID-19 Mobile App'
disclosed a bug submitted by
b'y1ngxi0ng'
b'ArcGIS Rest Service linked to unsecured survey data'
13 Feb 2021
b'WHO COVID-19 Mobile App'
disclosed a bug submitted by
b'jaimaakali'
b'Error Page Text Injection (no compromise)'
13 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'kaimi'
b'[files.ucs.ru] ProFTPd mod_copy Arbitrary Read/Write'
13 Feb 2021
b'Palo Alto Software'
disclosed a bug submitted by
b'silentkiller_'
b'[Bypass #870709] Unauthorised access to pagespeed global admin at https://webtools.paloalto.com/'
13 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'jayesh25'
b'Improper Restriction of Excessive Authentication Attempts via https://certification.mail.ru/auth-form/?form=auth_certy (Rate limit Bypass)'
12 Feb 2021
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'rchase'
b'Camera adoption DoS - UniFi Protect'
12 Feb 2021
1
...
225
226
227
228
229
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM