REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
65
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'whitehattushu'
b'No session logout after changing password & alsoandroid sessions not shown in sessions list so they can be deleted'
09 Feb 2020
b'NordVPN'
disclosed a bug submitted by
b'th3pr0xyb0y'
b'No Rate Limit On Forgot Password Page Of NordVPN'
08 Feb 2020
b'TTS Bug Bounty'
disclosed a bug submitted by
b'johnh4x0r'
b'Content injection via URL parameter.'
08 Feb 2020
b'Twitter'
disclosed a bug submitted by
b'jayesh25'
b'Bypass Password Authentication for updating email and phone number - Security Vulnerability'
08 Feb 2020
b'Infogram'
disclosed a bug submitted by
b'4m4n'
b'Bypass to report #280389 [Thinking The issue is not fixed Yet]'
07 Feb 2020
b'Redtube'
disclosed a bug submitted by
b'johndoe1492'
b'Blind XSS in redtube administering site my.reflected.net'
07 Feb 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'ermilov'
b'[script-manager] Unintended require'
07 Feb 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'ermilov'
b'[jsreport] Remote Code Execution'
07 Feb 2020
b'Localize'
disclosed a bug submitted by
b'harr2'
b'The password limit is not set, [DoS].'
06 Feb 2020
b'Localize'
disclosed a bug submitted by
b'moodiabdoul3'
b'Stored XSS in Name of Team Member Invitation'
06 Feb 2020
b'Node.js'
disclosed a bug submitted by
b'rogierschouten'
b'Remotely trigger an assertion on a TLS server with a malformed certificate string'
06 Feb 2020
b'Localize'
disclosed a bug submitted by
b'hckit_02'
b'Nginx version is disclosed in HTTP response'
06 Feb 2020
b'Shopify'
disclosed a bug submitted by
b'fransrosen'
b'H1514 Remote Code Execution on kitcrm using bulk customer update of Priority Products'
06 Feb 2020
b'Razer'
disclosed a bug submitted by
b'unl1k3ly'
b'Request Smuggling vulnerability due a vulnerable skipper reverse proxy running in the environment.'
05 Feb 2020
b'Stripo Inc'
disclosed a bug submitted by
b'brumens'
b'Authorization for wp-admin directory are vulnerable to brute force.'
05 Feb 2020
b'MTN Group'
disclosed a bug submitted by
b'juni19'
b'Upload directory of Mtn.co.sz has listing enabled'
05 Feb 2020
b'MTN Group'
disclosed a bug submitted by
b'juni19'
b'Upload directory of Mtn.ci'
05 Feb 2020
b'Razer'
disclosed a bug submitted by
b'nnez'
b'Reflected XSS at http://promotion.molthailand.com/index.php via promotion_id parameter'
05 Feb 2020
b'NordVPN'
disclosed a bug submitted by
b'dakitu'
b'IDOR allow access to payments data of any user'
05 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'grzegol'
b'CodeQL query for finding LDAP Injection (CWE-90) vulnerabilities in Java'
04 Feb 2020
1
...
338
339
340
341
342
...
745
BY DENIS WERNER - @NOBBD -
IMPRESSUM