REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.ru'
disclosed a bug submitted by
b'jayesh25'
b'Improper Restriction of Excessive Authentication Attempts at https://ucs.ru/login'
03 Dec 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'al-madjus'
b'Leaked DB credentials on https://.mil/'
03 Dec 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'CSRF to Stored HTML injection at https://www.'
03 Dec 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'PII Leak of USCG Designated Examiner List at https://www.'
03 Dec 2020
b'Kubernetes'
disclosed a bug submitted by
b'kittytrace'
b'Development Application Credentials + Information Exposed'
03 Dec 2020
b'Basecamp'
disclosed a bug submitted by
b'foobar7'
b'Bypass of image rewriting / tracking blocker via srcset'
03 Dec 2020
b'Automattic'
disclosed a bug submitted by
b'haqsek2'
b'Email Verification bypass on signup'
03 Dec 2020
b'Kubernetes'
disclosed a bug submitted by
b'piqin'
b'csi-snapshot-controller crashes when processing VolumeSnapshot with non-existing PVC'
03 Dec 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'asgerf'
b'[chart.js] Prototype pollution'
02 Dec 2020
b'Mail.ru'
disclosed a bug submitted by
b'alexeysergeevich'
b'stored xss + .'
02 Dec 2020
b'Mail.ru'
disclosed a bug submitted by
b'act1on3'
b'[smena.samokat.ru] Predictable JWT secret'
02 Dec 2020
b'Mail.ru'
disclosed a bug submitted by
b'chaosbolt'
b'[ICQ] nwwwstg-d01.ops.icq.com check mk agent exposed to public'
02 Dec 2020
b'Mail.ru'
disclosed a bug submitted by
b'ub1k'
b'Users information leak at sbermarket.ru'
01 Dec 2020
b'Mail.ru'
disclosed a bug submitted by
b'0x01alka'
b'/sql http://mx36.ucs.ru/ reflected XSS.'
01 Dec 2020
b'Showmax'
disclosed a bug submitted by
b'logicalh4x0r'
b'WordPress admin is accessible without HTTP authentication'
01 Dec 2020
b'GitLab'
disclosed a bug submitted by
b'yvvdwf'
b'Store-XSS in error message of build-dependencies '
01 Dec 2020
b'GitLab'
disclosed a bug submitted by
b'ngalog'
b'[Admin Panel] CSRF to resume/pause runner'
01 Dec 2020
b'Affirm'
disclosed a bug submitted by
b'yogesh_ojha'
b'Absence of Token expiry leads to Unauthorized login Access'
01 Dec 2020
b'GitLab'
disclosed a bug submitted by
b'vaib25vicky'
b'Unauthorized user is able to access schedule pipeline variables and values'
30 Nov 2020
b'Snapchat'
disclosed a bug submitted by
b'nahamsec'
b'Server-Side Request Forgery using Javascript allows to exfill data from Google Metadata'
30 Nov 2020
1
...
242
243
244
245
246
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM