REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'CS Money'
disclosed a bug submitted by
b'pmnh'
b"Attacker can generate cancelled transctions in a user's transaction history using only Steam ID"
03 Feb 2021
b'curl'
disclosed a bug submitted by
b'omdr'
b'Libcurl ocasionally sends HTTPS traffic to port 443 rather than specified port 8080'
03 Feb 2021
b'TikTok'
disclosed a bug submitted by
b'alertjd'
b'Rate limiting on report video'
02 Feb 2021
b'Automattic'
disclosed a bug submitted by
b'keer0k'
b'DOM-Based XSS in tumblr.com'
02 Feb 2021
b'HackerOne'
disclosed a bug submitted by
b'ahmd_halabi'
b'Denial Of Service (Out Of Memory) on Updating Bounty Table [Urgent]'
02 Feb 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'ihsinme: CPP Add query for CWE-401 memory leak on unsuccessful call to realloc function'
02 Feb 2021
b'GitLab'
disclosed a bug submitted by
b'maruthi12'
b'View the Starred Projects in a Private Profile'
02 Feb 2021
b'Nextcloud'
disclosed a bug submitted by
b'dedoc'
b'Access Control: Inject tasks into other users decks'
02 Feb 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'stevv'
b'Sensitive Information Leaking Through DoD Owned Website https://www..mil'
01 Feb 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'pi_hunter50'
b'Stored XSS at https://www..mil'
01 Feb 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'Reflected XSS on https:///'
01 Feb 2021
b'Automattic'
disclosed a bug submitted by
b'superman85'
b'Unauthenticated access to webmail at maildev.happytools.dev leading to compromised wordpress site api.happytools.dev [RCE]'
01 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'moonwalker'
b' '
01 Feb 2021
b'Node.js third-party modules'
disclosed a bug submitted by
b'sh1yo'
b'[socket.io] Cross-Site Websocket Hijacking '
31 Jan 2021
b'Automattic'
disclosed a bug submitted by
b'sudi'
b'Reflected XSS in https://www.intensedebate.com/js/getCommentLink.php'
30 Jan 2021
b'Nextcloud'
disclosed a bug submitted by
b'nathand'
b'nextcloud-snap CircleCI project has vulnerable configuration which can lead to exposing secrets'
29 Jan 2021
b'Mail.ru'
disclosed a bug submitted by
b'dgirlwhohacks'
b'Reflected XSS & Open Redirect at mcs main domain'
29 Jan 2021
b'Automattic'
disclosed a bug submitted by
b'boy_child_'
b'Permanent DoS at https://happy.tools/ when inviting a user'
29 Jan 2021
b'Mail.ru'
disclosed a bug submitted by
b'dawning12'
b'CSRF on api.my.games due to improper validation of token allows an attacker to delete other users notifications'
27 Jan 2021
b'Open-Xchange'
disclosed a bug submitted by
b'jub0bs'
b'Some build dependencies are downloaded over an insecure channel (without subsequent integrity checks)'
26 Jan 2021
1
...
229
230
231
232
233
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM