REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'WHO COVID-19 Mobile App'
disclosed a bug submitted by
b'd0nut'
b'Probably unexploitable XSS via Header Injection'
21 Dec 2020
b'Stripo Inc'
disclosed a bug submitted by
b'exploit_db'
b'Permanent DOS for new users!'
21 Dec 2020
b'phpBB'
disclosed a bug submitted by
b'they'
b"Server Side Request Forgery in 'Jabber settings' in Admin Control Panel"
20 Dec 2020
b'CS Money'
disclosed a bug submitted by
b'libneko'
b' / , steamid'
20 Dec 2020
b'Snapchat'
disclosed a bug submitted by
b'drrichardmatthews'
b'CreatorID leaked from public content posted to SnapMaps'
18 Dec 2020
b'TikTok'
disclosed a bug submitted by
b'gnux'
b'User Able to Reopen a Ticket by Modify the Request'
18 Dec 2020
b'TikTok'
disclosed a bug submitted by
b'sniper302'
b'User In The Same Center Can Create CSRF To Change The Information About Business'
18 Dec 2020
b'Nintendo'
disclosed a bug submitted by
b'mrnbayoh'
b'[3DS][SSL][SDK] Unchecked number of audio channels in Mobiclip SDK leads to RCE in eShop movie player'
18 Dec 2020
b'Nintendo'
disclosed a bug submitted by
b'mrnbayoh'
b'[3DS][SSL] Use of uninitialized class member leads to RCE in eShop movie player'
18 Dec 2020
b'Nintendo'
disclosed a bug submitted by
b'mrnbayoh'
b'[3DS][SSL] Improper certificate validation allows an attacker to perform MitM attacks'
18 Dec 2020
b'MariaDB'
disclosed a bug submitted by
b'gabriel_sztejnworcel'
b'Named pipe connection inteception'
17 Dec 2020
b'TikTok'
disclosed a bug submitted by
b'chihuahua'
b'Blind SSRF in ads.tiktok.com'
17 Dec 2020
b'Basecamp'
disclosed a bug submitted by
b'demonia'
b'Bypass Tracking Blocker Protection Using Slashes Without Protocol On The Image Source.'
17 Dec 2020
b'Nextcloud'
disclosed a bug submitted by
b'hitman_47'
b'XSS through image upload of contacts using svg file'
17 Dec 2020
b'The Internet'
disclosed a bug submitted by
b'vovohelo'
b'DOMPurify bypass'
17 Dec 2020
b'pixiv'
disclosed a bug submitted by
b'bcobain23'
b'XSS reflected on [https://www.pixiv.net]'
17 Dec 2020
b'Node.js'
disclosed a bug submitted by
b'zeus1999'
b'DNS Max Responses for DOS'
16 Dec 2020
b'HackerOne'
disclosed a bug submitted by
b'haxta4ok00'
b'The hacker has access to the administrative part of the management reports in publish report'
16 Dec 2020
b'Brave Software'
disclosed a bug submitted by
b'lalit2020'
b'https://publishers.basicattentiontoken.org/favicon.ico is Vulnerable to CVE-2017-7529'
16 Dec 2020
b'Basecamp'
disclosed a bug submitted by
b'shrey3'
b"Information Disclosure of Garbage Collection Cycle 'Again' "
16 Dec 2020
1
...
239
240
241
242
243
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM