REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
65
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Starbucks'
disclosed a bug submitted by
b'l00ph0le'
b'Open Redirect on Greater Asia domains'
21 Apr 2020
b'Razer'
disclosed a bug submitted by
b'xorcx'
b'RXSS at https://api.easy2pay.co/inquiry.php via txid parameter.'
21 Apr 2020
b'Shopify'
disclosed a bug submitted by
b'sreeju_kc'
b'None permission staff member can identify installed application and products attached to it'
21 Apr 2020
b'Staging.every.org'
disclosed a bug submitted by
b'ech0bh'
b'Private account causes displayed through API'
21 Apr 2020
b'Informatica'
disclosed a bug submitted by
b'moebius'
b'XXE through injection of a payload in the XMP metadata of a JPEG file'
21 Apr 2020
b'Insolar'
disclosed a bug submitted by
b'sahubawa'
b'MAIL SPOOFING'
21 Apr 2020
b'Maximum'
disclosed a bug submitted by
b'iam1here'
b'I can subscribe and unsubscribe any user with the same token for as many times as i want'
21 Apr 2020
b'LINE'
disclosed a bug submitted by
b'derision'
b'Reflected XSS in OAUTH2 login flow '
21 Apr 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'kyprizel'
b'Initial websocket support for Javascript (SockJS)'
20 Apr 2020
b'Nextcloud'
disclosed a bug submitted by
b'hitman_47'
b'IDOR allows me to mark devices of another user for remote wipe out'
19 Apr 2020
b'Palo Alto Software'
disclosed a bug submitted by
b'seqrity'
b'Stored XSS on upload files leads to steal cookie'
18 Apr 2020
b'GitLab'
disclosed a bug submitted by
b'mclaren650sspider'
b'Server Side Request Forgery mitigation bypass'
18 Apr 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'ulldma'
b'Java/CWE-036: Calling openStream on URLs created from remote source can lead to file disclosure'
17 Apr 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'theopolis'
b'CPP: Out of order Linux permission dropping without checking return codes'
17 Apr 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'Go/CWE-643: XPath Injection Query in Go'
17 Apr 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'CPP: Out of order Linux permission dropping without checking return codes'
17 Apr 2020
b'Automattic'
disclosed a bug submitted by
b'nathand'
b'Denial of service to WP-JSON API by cache poisoning the CORS allow origin header'
16 Apr 2020
b'Mail.ru'
disclosed a bug submitted by
b'r0hack'
b'HTML injection at face.city-mobil.ru'
16 Apr 2020
b'Mapbox'
disclosed a bug submitted by
b'h4ck3d'
b'Reflected XSS via XML Namespace URI on https://go.mapbox.com/index.php/soap/'
15 Apr 2020
b'Mail.ru'
disclosed a bug submitted by
b'act1on3'
b'[fleet.city-mobil.ru] Driver balance increasing'
15 Apr 2020
1
...
319
320
321
322
323
...
745
BY DENIS WERNER - @NOBBD -
IMPRESSUM