REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'reflected xss [CVE-2020-3580]'
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'neg0x'
b'Reflected Cross-site Scripting via search query on '
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'kurogai'
b'Reflected XSS on error message on Login Page'
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'Reflected XSS via Moodle on [CVE-2022-35653]'
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'neg0x'
b"SQL injection on via 'where' parameter"
03 May 2024
b'Node.js'
disclosed a bug submitted by
b'uzlopak'
b'fetch with integrity option is too lax when algorithm is specified but hash value is in incorrect'
03 May 2024
b'Node.js'
disclosed a bug submitted by
b'iylz'
b'Proxy-Authorization header not cleared on cross-origin redirect in undici.request'
03 May 2024
b'Node.js'
disclosed a bug submitted by
b'bpingel'
b'HTTP Request Smuggling via Content Length Obfuscation'
03 May 2024
b'Adobe'
disclosed a bug submitted by
b'renzi'
b"Adobe Experience Manager 'Childlist selector' - Cross-Site Scripting on cbconnection.adobe.com"
02 May 2024
b'Deriv.com'
disclosed a bug submitted by
b'zacian'
b'Mailgun subdomain takeover '
02 May 2024
b'Shopify'
disclosed a bug submitted by
b'ryanmoles6'
b'Production Key and Data Found on Subdomain No Longer Operated by Shopify / Dangling DNS'
01 May 2024
b'Shopify'
disclosed a bug submitted by
b'niraj1mahajan'
b'No Session Expiry after log-out, attacker can reuse the old cookies'
01 May 2024
b'IBM'
disclosed a bug submitted by
b'suryahss'
b'Insecure Direct Object Reference Protection bypass by changing HTTP method in IBM Your Learning endpoint. '
01 May 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'bart'
b'Assertion failed in node::http2::Http2Session::~Http2Session() leads to HTTP/2 server crash'
29 Apr 2024
b'HackerOne'
disclosed a bug submitted by
b'xklepxn'
b'Attachment disclosure via summary report '
29 Apr 2024
b'Hyperledger'
disclosed a bug submitted by
b'another_dude'
b'Code exec on Github runner via Pull request name'
28 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'parantheses'
b'CVE-2024-25128: Apache Airflow: Authentication Bypass when Legacy OpenID(2.0) is in use as AUTH_TYPE'
28 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'scyoon'
b'CVE-2024-27351: Potential regular expression denial-of-service in django.utils.text.Truncator.words()'
28 Apr 2024
b'PlayStation'
disclosed a bug submitted by
b'theflow0'
b'Remote vulnerabilities in spp'
25 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'bart'
b'Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames'
24 Apr 2024
1
...
30
31
32
33
34
...
724
BY DENIS WERNER - @NOBBD -
IMPRESSUM