REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'GitLab'
disclosed a bug submitted by
b'yvvdwf'
b'XSS on Issue reference numbers'
23 Nov 2020
b'Open-Xchange'
disclosed a bug submitted by
b'skr0x1c0'
b'Blind SSRF in /appsuite/api/oxodocumentfilter&action=addfile'
23 Nov 2020
b'Open-Xchange'
disclosed a bug submitted by
b'skr0x1c0'
b'XSS on opening a malicious OpenOffice text document'
23 Nov 2020
b'Open-Xchange'
disclosed a bug submitted by
b'skr0x1c0'
b'XSS on opening malicious OpenOffice presentation document'
23 Nov 2020
b'FileZilla'
disclosed a bug submitted by
b'ayson88'
b"FileZilla 3.46.3 - 'Scale factor' Buffer Overflow"
21 Nov 2020
b'GitLab'
disclosed a bug submitted by
b'mike12'
b'Stored XSS in group issue list'
21 Nov 2020
b'Kubernetes'
disclosed a bug submitted by
b'mlevesquedion'
b'kubeadm logs tokens before deleting them'
21 Nov 2020
b'Shopify'
disclosed a bug submitted by
b'vocotnhan'
b'[Information Disclosure] Amazon S3 Bucket of Shopify Ping (iOS) have public access of other users image'
21 Nov 2020
b'GitLab'
disclosed a bug submitted by
b'vaib25vicky'
b'Unauthorized access to private project security dashboard'
21 Nov 2020
b'PlayStation'
disclosed a bug submitted by
b'bugdiscloseguys'
b'Access token stealing.'
21 Nov 2020
b'PlayStation'
disclosed a bug submitted by
b'nnez'
b'Authorization Token on PlayStation Network Leaks via postMessage function'
21 Nov 2020
b'Twitter'
disclosed a bug submitted by
b'soareswallace'
b'Delete direct message history without access the proper conversation_id'
20 Nov 2020
b'Endless Hosting'
disclosed a bug submitted by
b'nagli'
b'CVE-2020-14179 on https://jira.theendlessweb.com/secure/QueryComponent!Default.jspa leads to information disclosure'
20 Nov 2020
b'TikTok'
disclosed a bug submitted by
b'milly'
b'Cross-Site-Scripting on www.tiktok.com and m.tiktok.com leading to Data Exfiltration'
19 Nov 2020
b'Shopify'
disclosed a bug submitted by
b'tomorrow_future'
b'XSS stored in the Shopify Email app'
19 Nov 2020
b'Shopify'
disclosed a bug submitted by
b'tomorrow_future'
b'Self xss in product reviews'
19 Nov 2020
b'Shopify'
disclosed a bug submitted by
b'francisbeaudoin'
b'Order lookup features of Shopify Chat Application leads to customer orders enumeration due to lack of user input validation'
19 Nov 2020
b'Shopify'
disclosed a bug submitted by
b'ngalog'
b'Staff Member can Get POS Access Without User Interaction'
19 Nov 2020
b'Basecamp'
disclosed a bug submitted by
b'co0sin'
b'Remote Code Execution in Basecamp Windows Electron App'
19 Nov 2020
b'Shopify'
disclosed a bug submitted by
b'francisbeaudoin'
b'Staff with no permissions can listen to Shopify Ping conversions by registering to its different WebSocket Events'
19 Nov 2020
1
...
245
246
247
248
249
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM