REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'ilyass01'
b"RCE (Remote code execution) in one of DoD's websites "
30 Jul 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'lemonoftroy'
b'HTML Injection leads to XSS on???'
30 Jul 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'atbabers'
b'Stored XSS on ????????helpdesk'
30 Jul 2020
b'Mail.ru'
disclosed a bug submitted by
b'killinem_sec'
b'SMTP Header Injection at http://abonement.ucs.ru'
30 Jul 2020
b'Courier'
disclosed a bug submitted by
b'ni4hadpd'
b'Bypass Too Many Requests Sign Up '
30 Jul 2020
b'Shopify'
disclosed a bug submitted by
b'cyber__sec'
b'Stored XSS in my staff name fired in another your internal panel'
29 Jul 2020
b'8x8'
disclosed a bug submitted by
b'b1ackgamba'
b'SQL injection (stacked queries) in the export to Excel functionality on Vidyo Server'
29 Jul 2020
b'Vanilla'
disclosed a bug submitted by
b'minoto'
b'Stealing the ip addres from users'
29 Jul 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'chalker'
b'Fastify uses allErrors: true ajv configuration by default which is susceptible to DoS'
29 Jul 2020
b'Nextcloud'
disclosed a bug submitted by
b'xcheater'
b'Possible denial of service when entering a loooong password'
29 Jul 2020
b'Courier'
disclosed a bug submitted by
b'ahmed_almalky'
b'Missing rate limit in signup Form '
28 Jul 2020
b'Razer'
disclosed a bug submitted by
b'dredd_589'
b'User Access Control Bypass Via Razer elevated service ( RzKLService.exe ) which loads exe in misconfigured way.'
28 Jul 2020
b'Razer'
disclosed a bug submitted by
b'stealthy'
b'SQL injection in Razer Gold List Admin at /lists/index.php via the `list[]` parameter. '
28 Jul 2020
b'Starbucks'
disclosed a bug submitted by
b'ko2sec'
b'Singapore - Account Takeover via IDOR'
28 Jul 2020
b'Mapbox'
disclosed a bug submitted by
b'fransrosen'
b'Test-scripts for postgis in mason-repository using unsafe unzip of content from unclaimed bucket creates potential RCE-issues'
28 Jul 2020
b'Mail.ru'
disclosed a bug submitted by
b'hunter_py'
b'HTML/iframe/XSS injection on https://www.ucs.ru/online/shelter/settings/check/'
28 Jul 2020
b'Mail.ru'
disclosed a bug submitted by
b'sayaanalam'
b"Blindy Replace User's Session with Attacker's Session"
28 Jul 2020
b'Mail.ru'
disclosed a bug submitted by
b'samet'
b'"????" + Unauthenticated Stored XSS in API at https://api.my.games/comments/v1/comments/update/'
28 Jul 2020
b'Mail.ru'
disclosed a bug submitted by
b'urban_tramp'
b'Content injection on shared event (calendar.mail.ru)'
28 Jul 2020
b'Mail.ru'
disclosed a bug submitted by
b'sniper302'
b'Stored XSS In mlbootcamp.ru'
28 Jul 2020
1
...
283
284
285
286
287
...
740
BY DENIS WERNER - @NOBBD -
IMPRESSUM