REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'todayisnew-'
b'[ CVE-2018-1000129 ] RXSS At `https://` via the URI'
18 Dec 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'k0x'
b'CSRF to XSS'
18 Dec 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'k0x'
b'XSS Reflected'
18 Dec 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'prakhar0x01'
b'CSRF Attack leads to delete album at '
18 Dec 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'moha1sd'
b'Unauthorized Access Exposing Sensitive Data'
18 Dec 2024
b'LinkedIn'
disclosed a bug submitted by
b'j0r1an'
b'Forced OAuth authorization using button ID in hash and holding space'
17 Dec 2024
b'Nextcloud'
disclosed a bug submitted by
b'd-xuan'
b'X-E2EE-SIGNATURE verification can be bypassed, leading to loss of confidentiality of end-to-end encrypted files'
15 Dec 2024
b'Nextcloud'
disclosed a bug submitted by
b'pulsejet'
b'Incomplete sanitization in SVG preview provider'
15 Dec 2024
b'Nextcloud'
disclosed a bug submitted by
b'rullzer'
b'Nextcloud mail does not respect download permissions in shares'
15 Dec 2024
b'IBM'
disclosed a bug submitted by
b'facades'
b'Exposed Logs and Bearer Tokens on Test Endpoint'
12 Dec 2024
b'MercadoLibre'
disclosed a bug submitted by
b'andresbebe'
b'Es posible poder navegar a cualquier pagina en Point Smart application'
11 Dec 2024
b'curl'
disclosed a bug submitted by
b'nyymi'
b'netrc + redirect credential leak'
11 Dec 2024
b'Acronis'
disclosed a bug submitted by
b'mr-medi'
b'Render content from untrusted sources via web_preview endpoint on Acronis Cloud'
09 Dec 2024
b'curl'
disclosed a bug submitted by
b'napol-webug'
b'Buffer Overflow Risk in Curl_inet_ntop and inet_ntop4'
08 Dec 2024
b'Mozilla'
disclosed a bug submitted by
b'ebrietas'
b'RCE on worker host due to unsanitized "env" variable name in task definition on community-tc.services.mozilla.com'
08 Dec 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'nhienit2010'
b'CVE-2024-45498: Apache Airflow Command injection in read_dataset_event_from_classic DAG'
07 Dec 2024
b'Mozilla'
disclosed a bug submitted by
b'haveaniceday'
b'[ addons-preview-cdn.mozilla.net ] A subdomain takeover is available via unregistered domain in Fastly'
06 Dec 2024
b'Acronis'
disclosed a bug submitted by
b'mrityu'
b'IP restriction bypass via X-Forwarded-For header'
05 Dec 2024
b'Nextcloud'
disclosed a bug submitted by
b'pseudo-llrktbeyk'
b'Invisible Salamanders Attack against end_to_end_encryption in Nextcloud'
03 Dec 2024
b'Localize'
disclosed a bug submitted by
b'black_world'
b'open redirected by host header'
02 Dec 2024
1
...
25
26
27
28
29
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM