REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'New Relic'
disclosed a bug submitted by
b'jon_bottarini'
b'[NR Infrastructure] Restricted user can update integration provider account name via integrations API'
04 Sep 2020
b'New Relic'
disclosed a bug submitted by
b'jon_bottarini'
b'[NR Insights] Data app permissions setting does not fully prevent other users from modifying/changing changing data related to your data app '
04 Sep 2020
b'New Relic'
disclosed a bug submitted by
b'jon_bottarini'
b'IDOR via internal_api "users" endpoint '
04 Sep 2020
b'New Relic'
disclosed a bug submitted by
b'jon_bottarini'
b'User is able to access and create private synthetics locations without upgrading (regression of #276157) '
04 Sep 2020
b'New Relic'
disclosed a bug submitted by
b'jon_bottarini'
b'[NR Synthetics] Restricted User can add/modify alert conditions on monitors without any synthetics privileges '
04 Sep 2020
b'Brave Software'
disclosed a bug submitted by
b'drwx'
b'Cross-origin resource sharing misconfiguration (CORS)'
04 Sep 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'CodeQL query to detect XSLT injections'
03 Sep 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'Query to find TLS configurations supporting hardcoded insecure versions of the protocol and cipher suites'
03 Sep 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'[CATENACYBER]: [CPP] CWE-476 Null Pointer Dereference : Another query to either missing or redundant NULL check'
03 Sep 2020
b'Dropbox'
disclosed a bug submitted by
b'tesitura'
b'Local Privilege Escalation on Dropbox Desktop for Windows'
03 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'chron0x'
b'Subdomain takeover due to an unclaimed Amazon S3 bucket on ???'
03 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'e3xpl0it'
b'?ode injection host ?????????'
03 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'hzllaga'
b'Remote Code Execution on ?????????'
03 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'secret_letters'
b'??? is vulnerable to CVE-2020-3452 Read-Only Path Traversal Vulnerability'
03 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'professor1'
b'CVE-2020-3452, unauthenticated file read in Cisco ASA & Cisco Firepower.'
03 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'rudra_2000'
b'Elmah.axd is publicly accessible and leaking Error Log for ROOT on ?????_PRD_WEB1 ?????????elmah.axd'
03 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'Reflected XSS on ???????'
03 Sep 2020
b'Mail.ru'
disclosed a bug submitted by
b'yukusawa18'
b'REFLECTED XSS On http://jsgames.mail.ru/bad_browser.php via back_url paramter'
03 Sep 2020
b'Mail.ru'
disclosed a bug submitted by
b'r0hack'
b'SQL injection at fleet.city-mobil.ru'
03 Sep 2020
b'Equifax'
disclosed a bug submitted by
b'aksquare'
b'Open SonarQube instance leaking internal source code'
03 Sep 2020
1
...
248
249
250
251
252
...
719
BY DENIS WERNER - @NOBBD -
IMPRESSUM