REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Automattic'
disclosed a bug submitted by
b'bugra'
b'Reflected XSS at /category/ on a Atavis theme '
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'bugra'
b'Reflected XSS on a Atavist theme at external_import.php'
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'bugra'
b'Can buy Atavist Magazine subscription for free'
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'bugra'
b'Captcha checker "pd-captcha_form_SURVEYID" cookie is accepting any value'
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'bugra'
b'IDOR when editing email leads to Account Takeover on Atavist'
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'bugra'
b'Site-wide CSRF at Atavist '
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'mygf'
b"IDOR leads to Edit Anyone's Blogs / Websites"
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'mygf'
b'Stored XSS on https://app.crowdsignal.com/surveys/[Survey-Id]/question - Bypass'
18 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'mygf'
b'Stored XSS on app.crowdsignal.com + your-subdomain.survey.fm via Embed Media'
18 Nov 2020
b'BugPoC'
disclosed a bug submitted by
b'vovohelo'
b'XSS PoC for the wacky.buggywebsite.com challenge'
18 Nov 2020
b'ImpressCMS'
disclosed a bug submitted by
b'zoomzoom1'
b'Slack server disclose h1 private issue report'
18 Nov 2020
b'Twitter'
disclosed a bug submitted by
b'protostar0'
b'http request smuggling in twitter.com'
18 Nov 2020
b'Imgur'
disclosed a bug submitted by
b'keer0k'
b'self-xss with ClickJacking can leads to account takeover in Firefox'
17 Nov 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'd3lla'
b'[@firebase/util] Prototype pollution'
17 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'sanktjodel'
b'Social App does not validate server certificates for outgoing connections'
17 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'sanktjodel'
b'Improper access control to messages of Social app'
17 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'myat_htut_kyaw'
b'Leaked of Profile Image from URL changing'
17 Nov 2020
b'LINE'
disclosed a bug submitted by
b'kanytu'
b'Path traversal in ZIP extract routine on LINE Android'
17 Nov 2020
b'LINE'
disclosed a bug submitted by
b'66ed3gs'
b'Improper Access Control in LINE Timeline API that returns a list of hidden friends'
17 Nov 2020
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Security@ email forwarding and Embedded Submission drafts can be used to obtain copy of deleted attachments from other HackerOne users'
17 Nov 2020
1
...
227
228
229
230
231
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM