REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'BugPoC'
disclosed a bug submitted by
b'vovohelo'
b'XSS PoC for the wacky.buggywebsite.com challenge'
18 Nov 2020
b'ImpressCMS'
disclosed a bug submitted by
b'zoomzoom1'
b'Slack server disclose h1 private issue report'
18 Nov 2020
b'Twitter'
disclosed a bug submitted by
b'protostar0'
b'http request smuggling in twitter.com'
18 Nov 2020
b'Imgur'
disclosed a bug submitted by
b'keer0k'
b'self-xss with ClickJacking can leads to account takeover in Firefox'
17 Nov 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'd3lla'
b'[@firebase/util] Prototype pollution'
17 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'sanktjodel'
b'Social App does not validate server certificates for outgoing connections'
17 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'sanktjodel'
b'Improper access control to messages of Social app'
17 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'myat_htut_kyaw'
b'Leaked of Profile Image from URL changing'
17 Nov 2020
b'LINE'
disclosed a bug submitted by
b'kanytu'
b'Path traversal in ZIP extract routine on LINE Android'
17 Nov 2020
b'LINE'
disclosed a bug submitted by
b'66ed3gs'
b'Improper Access Control in LINE Timeline API that returns a list of hidden friends'
17 Nov 2020
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Security@ email forwarding and Embedded Submission drafts can be used to obtain copy of deleted attachments from other HackerOne users'
17 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'mjigar821'
b'Forbidden access to https://apps-staging.pingone.com but "/packages.json" visible and full path disclosure'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'cybersera'
b'No valid SPF record not found'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'renniepak'
b'Stored XSS in Application menu via Home Page Url'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'gujjuboy10x00'
b'Session misconfiguration on forget password feature at https://ort-admin.pingone.com'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'gujjuboy10x00'
b'Session misconfiguration on change password feature at https://apps-staging.pingone.com/myaccount/?environmentId=xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx#'
16 Nov 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'effectrenan'
b'[systeminformation] Command Injection via insecure command formatting'
16 Nov 2020
b'Informatica'
disclosed a bug submitted by
b'r1pley'
b'Blind SQL injection at tsftp.informatica.com'
16 Nov 2020
b'curl'
disclosed a bug submitted by
b'thomas_v'
b'Heap buffer overflow in TFTP when using small blksize'
14 Nov 2020
b'curl'
disclosed a bug submitted by
b'thomas_v'
b'krb5: double-free in read_data() after realloc() fail'
14 Nov 2020
1
...
247
248
249
250
251
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM