REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'LINE'
disclosed a bug submitted by
b'kanytu'
b'Path traversal in ZIP extract routine on LINE Android'
17 Nov 2020
b'LINE'
disclosed a bug submitted by
b'66ed3gs'
b'Improper Access Control in LINE Timeline API that returns a list of hidden friends'
17 Nov 2020
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Security@ email forwarding and Embedded Submission drafts can be used to obtain copy of deleted attachments from other HackerOne users'
17 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'mjigar821'
b'Forbidden access to https://apps-staging.pingone.com but "/packages.json" visible and full path disclosure'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'cybersera'
b'No valid SPF record not found'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'renniepak'
b'Stored XSS in Application menu via Home Page Url'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'gujjuboy10x00'
b'Session misconfiguration on forget password feature at https://ort-admin.pingone.com'
16 Nov 2020
b'Ping Identity'
disclosed a bug submitted by
b'gujjuboy10x00'
b'Session misconfiguration on change password feature at https://apps-staging.pingone.com/myaccount/?environmentId=xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx#'
16 Nov 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'effectrenan'
b'[systeminformation] Command Injection via insecure command formatting'
16 Nov 2020
b'Informatica'
disclosed a bug submitted by
b'r1pley'
b'Blind SQL injection at tsftp.informatica.com'
16 Nov 2020
b'curl'
disclosed a bug submitted by
b'thomas_v'
b'Heap buffer overflow in TFTP when using small blksize'
14 Nov 2020
b'curl'
disclosed a bug submitted by
b'thomas_v'
b'krb5: double-free in read_data() after realloc() fail'
14 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'u0pattern'
b'Rate Limit Misconfiguration on tumblr login .'
13 Nov 2020
b'GoCD'
disclosed a bug submitted by
b'asusrog'
b'XSS In https://docs.gocd.org/current/'
13 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'yahe'
b'Improper confidentiality protection of server-side encryption keys'
13 Nov 2020
b'Nextcloud'
disclosed a bug submitted by
b'yahe'
b'Improper integrity protection of server-side encryption keys'
13 Nov 2020
b'BugPoC'
disclosed a bug submitted by
b'd1r3wolf'
b'Solution for XSS challenge wacky.buggywebsite.com'
13 Nov 2020
b'LINE'
disclosed a bug submitted by
b'dhbd88'
b'CORS misconfiguration leads to users information disclosure at https://studyroom.line.me'
13 Nov 2020
b'BugPoC'
disclosed a bug submitted by
b'machinexa'
b'Reflected XSS at wacky.buggywebsite.com/frame.html'
12 Nov 2020
b'BugPoC'
disclosed a bug submitted by
b'effectrenan'
b'XSS Challenge'
12 Nov 2020
1
...
251
252
253
254
255
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM