REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Node.js'
disclosed a bug submitted by
b'tniessen'
b'Code injection and privilege escalation through Linux capabilities'
15 Feb 2024
b'Node.js'
disclosed a bug submitted by
b'hkario'
b'Node.js is vulnerable to the Marvin Attack (timing variant of the Bleichenbacher attack against PKCS#1 v1.5 padding)'
15 Feb 2024
b'Node.js'
disclosed a bug submitted by
b'bart'
b'http: Reading unprocessed HTTP request with unbounded chunk extension allows DoS attacks'
15 Feb 2024
b'Node.js'
disclosed a bug submitted by
b'xion'
b'Multiple permission model bypasses due to improper path traversal sequence sanitization'
15 Feb 2024
b'Stripo Inc'
disclosed a bug submitted by
b'deb0con'
b'[SSRF] my.stripo.email via the setup-wizard parameter'
15 Feb 2024
b'Stripo Inc'
disclosed a bug submitted by
b'deb0con'
b'[demo.stripo.email] HTTP request Smuggling'
15 Feb 2024
b'Stripo Inc'
disclosed a bug submitted by
b'sankalpa_1337'
b'Non-revoked API Key Disclosure in a Disclosed API Key Disclosure Report on Stripo'
15 Feb 2024
b'Mars'
disclosed a bug submitted by
b'themarkib0x0'
b'Client Side Template Injection to Stored XSS in Image Collection'
14 Feb 2024
b'Mars'
disclosed a bug submitted by
b'haoshokunoo'
b'IDOR in one subdomain of -> change information of pets without athorization!'
14 Feb 2024
b'Mars'
disclosed a bug submitted by
b'stuux'
b'Blind SQL Injection on via URI Path'
14 Feb 2024
b'Publitas'
disclosed a bug submitted by
b'azanul'
b'CVE-2018-6389 exploitation - using scripts loader'
13 Feb 2024
b'Weblate'
disclosed a bug submitted by
b'aydinyunus'
b'Information Disclosure'
12 Feb 2024
b'inDrive'
disclosed a bug submitted by
b'mega9'
b'Host Header Injection - internal.qa.delivery.indrive.com'
12 Feb 2024
b'Mozilla Core Services'
disclosed a bug submitted by
b'd0xing'
b'Subdomain takeover on one of the subdomain under mozgcp.net'
11 Feb 2024
b'Mozilla Core Services'
disclosed a bug submitted by
b'd0xing'
b'Subdomain takeover on one of the subdomain under mozaws.net'
11 Feb 2024
b'Mozilla Core Services'
disclosed a bug submitted by
b'd0xing'
b'Subdomain takeover on one of the subdomain under mozaws.net'
11 Feb 2024
b'Mozilla Core Services'
disclosed a bug submitted by
b'd0xing'
b'Subdomain takeover on one of the subdomain under mozaws.net'
11 Feb 2024
b'Mozilla Core Services'
disclosed a bug submitted by
b'd0xing'
b'Subdomain takeover on one of the subdomain under mozaws.net'
11 Feb 2024
b'Mozilla Core Services'
disclosed a bug submitted by
b'proabiral'
b'Subdomain takeover on one of the subdomain under mozaws.net'
11 Feb 2024
b'Tennessee Valley Authority'
disclosed a bug submitted by
b'itssixtynein'
b'File listing through scripts folder'
09 Feb 2024
1
...
29
30
31
32
33
...
717
BY DENIS WERNER - @NOBBD -
IMPRESSUM