REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'curl'
disclosed a bug submitted by
b'vshmuk'
b'Port and service scanning on localhost due to improper URL validation.'
15 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'tunz'
b'Use After Free in crypto.randomFill'
15 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'arkadiyt'
b'Http request splitting'
15 Jan 2020
b'Automattic'
disclosed a bug submitted by
b'godofdarkness_msf'
b'Theme Assets uploader allows HTML content'
14 Jan 2020
b'Automattic'
disclosed a bug submitted by
b'godofdarkness_msf'
b'Follow by email allows for following by unverified emails'
14 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'mickey01'
b'Information disclosure with sensitive data'
14 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'mobius07'
b'API method at api.my.games allows to enumerate user emails'
14 Jan 2020
b'DRIVE.NET, Inc.'
disclosed a bug submitted by
b'dre4dp1r4terob3rts'
b'Same site Scripting '
13 Jan 2020
b'Razer'
disclosed a bug submitted by
b'namunah'
b'Misconfigured s3 Bucket exposure'
12 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'vineetpandey'
b'[node-red] Stored XSS within Flow\'s - "Name" field '
11 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'mik317'
b'[npm-git-publish] RCE via insecure command formatting'
11 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'ayerobot'
b'Stored XSS (Hexo-admin plugin)'
11 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'mik317'
b'[meta-git] RCE via insecure command formatting'
11 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'vavkamil'
b'CRLF Injection in legacy url API (url.parse().hostname)'
10 Jan 2020
b'NordVPN'
disclosed a bug submitted by
b'bobby6102000'
b'Version problem in wordpress leads to the many vulnearability'
10 Jan 2020
b'SEMrush'
disclosed a bug submitted by
b'zcashi'
b'Unrestricted file upload in www.semrush.com > /my_reports/api/v1/upload/image'
10 Jan 2020
b'Razer'
disclosed a bug submitted by
b'corraldev'
b'Reflected XSS at https://pay.gold.razer.com escalated to account takeover'
10 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'tosh'
b'Hostname spoofing'
10 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'bounty-'
b'unauthorized access to add admin endpoint '
09 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'sparks'
b'Race condition ??? ??????? ???????? ?? games.mail.ru'
09 Jan 2020
1
...
330
331
332
333
334
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM