REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Kubernetes'
disclosed a bug submitted by
b'lazydog'
b'DoS for GCSArtifact.RealAll'
04 Feb 2021
b'Kubernetes'
disclosed a bug submitted by
b'vavkamil'
b'XSS on kubernetes-csi.github.io (mdBook)'
04 Feb 2021
b'Twitter'
disclosed a bug submitted by
b'milankatwal'
b' Github Account hijack through broken link in developer.twitter.com'
04 Feb 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'[Java] CWE-326: Query to detect weak encryption with an insufficient key size'
04 Feb 2021
b'Topcoder'
disclosed a bug submitted by
b'can1337'
b"IDOR at https://fast.trychameleon.com/observe/v2/profiles/ via uid parameter discloses users' PII data"
03 Feb 2021
b'CS Money'
disclosed a bug submitted by
b'mr_vrush'
b'Able to upload backgrounds before entering 2FA'
03 Feb 2021
b'CS Money'
disclosed a bug submitted by
b'pmnh'
b"Attacker can generate cancelled transctions in a user's transaction history using only Steam ID"
03 Feb 2021
b'curl'
disclosed a bug submitted by
b'omdr'
b'Libcurl ocasionally sends HTTPS traffic to port 443 rather than specified port 8080'
03 Feb 2021
b'TikTok'
disclosed a bug submitted by
b'alertjd'
b'Rate limiting on report video'
02 Feb 2021
b'Automattic'
disclosed a bug submitted by
b'keer0k'
b'DOM-Based XSS in tumblr.com'
02 Feb 2021
b'HackerOne'
disclosed a bug submitted by
b'ahmd_halabi'
b'Denial Of Service (Out Of Memory) on Updating Bounty Table [Urgent]'
02 Feb 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'ihsinme'
b'ihsinme: CPP Add query for CWE-401 memory leak on unsuccessful call to realloc function'
02 Feb 2021
b'GitLab'
disclosed a bug submitted by
b'maruthi12'
b'View the Starred Projects in a Private Profile'
02 Feb 2021
b'Nextcloud'
disclosed a bug submitted by
b'dedoc'
b'Access Control: Inject tasks into other users decks'
02 Feb 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'stevv'
b'Sensitive Information Leaking Through DoD Owned Website https://www..mil'
01 Feb 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'pi_hunter50'
b'Stored XSS at https://www..mil'
01 Feb 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'Reflected XSS on https:///'
01 Feb 2021
b'Automattic'
disclosed a bug submitted by
b'superman85'
b'Unauthenticated access to webmail at maildev.happytools.dev leading to compromised wordpress site api.happytools.dev [RCE]'
01 Feb 2021
b'Mail.ru'
disclosed a bug submitted by
b'moonwalker'
b' '
01 Feb 2021
b'Node.js third-party modules'
disclosed a bug submitted by
b'sh1yo'
b'[socket.io] Cross-Site Websocket Hijacking '
31 Jan 2021
1
...
256
257
258
259
260
...
769
BY DENIS WERNER - @NOBBD -
IMPRESSUM