REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Node.js'
disclosed a bug submitted by
b'underflow0'
b'Slowloris, body parsing'
17 Oct 2020
b'Node.js'
disclosed a bug submitted by
b'shogunpanda'
b'Denial of Service by resource exhaustion CWE-400 due to unfinished HTTP/1.1 requests'
17 Oct 2020
b'Node.js'
disclosed a bug submitted by
b'ashi009'
b'`fs.realpath.native` on darwin may cause buffer overflow'
17 Oct 2020
b'Node.js'
disclosed a bug submitted by
b'amitklein'
b'HTTP Request Smuggling due to CR-to-Hyphen conversion'
17 Oct 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'hassanshahid'
b'https://?????? vulnerable to CVE-2020-3187 - Unauthenticated arbitrary file deletion in Cisco ASA/FTD'
16 Oct 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'r4d1kal'
b'Sensitive data exposure via https://????????.mil/secure/QueryComponent!Default.jspa - CVE-2020-14179'
16 Oct 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mzfr'
b'[CVE-2020-3452] Unauthenticated file read in Cisco ASA'
16 Oct 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'arm4nd0'
b'[??????????.mil] Cisco VPN Service Path Traversal'
16 Oct 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'yassinek3ch'
b'[SQLI ]Time Bassed Injection at ?????????? via referer header'
16 Oct 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'x3ph_'
b'External Service Interaction | https://?????????.mil'
16 Oct 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'dhakal_bibek'
b'CSRF to account takeover in https://???????.mil/'
16 Oct 2020
b'Solana BBP'
disclosed a bug submitted by
b'daniel1895'
b'Heap memory can be accessible through metrics.solana.com'
16 Oct 2020
b'Solana BBP'
disclosed a bug submitted by
b'daniel1895'
b'Buffer can be readable through Debug on metrics.solana.com '
16 Oct 2020
b'Engel & V\xc3\xb6lkers Technology Gmb'
disclosed a bug submitted by
b'jeffallan'
b'Debug information at the /sapi endpoint'
16 Oct 2020
b'Stripo Inc'
disclosed a bug submitted by
b'assafkiller'
b'weak password poilicy in signup password leak to account takeover'
16 Oct 2020
b'HackerOne'
disclosed a bug submitted by
b'mygf'
b'Getting New Invitations without Leaving Programs'
15 Oct 2020
b'Acronis'
disclosed a bug submitted by
b'abosala7'
b'Get ip and Geo location any user via Clickjacking with inspectlet technology'
15 Oct 2020
b'Mail.ru'
disclosed a bug submitted by
b'superboyxxx'
b'web.icq.com XSS in chat message via contact info'
15 Oct 2020
b'Bitwarden'
disclosed a bug submitted by
b'exploit_db'
b'Rate limits too low for email 2FA'
14 Oct 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'ansuj'
b'[freespace] Command Injection due to Lack of Sanitization'
14 Oct 2020
1
...
237
238
239
240
241
...
719
BY DENIS WERNER - @NOBBD -
IMPRESSUM