REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'HackerOne'
disclosed a bug submitted by
b'akashhamal0x01'
b'Non Org Admin/Group Manager can create groups in an organization'
23 Jul 2024
b'HackerOne'
disclosed a bug submitted by
b'iam_srpk'
b'Minor security issue with Hackerone Invitations from sandbox program'
22 Jul 2024
b'Nintendo'
disclosed a bug submitted by
b'lnchan'
b'Arbitrary code execution in TSEC Heavy Secure, return-oriented programming in TSEC Secure ROM, and recovery of TSEC-derived cryptographic secrets'
22 Jul 2024
b'TikTok'
disclosed a bug submitted by
b'696e746c6f6c'
b'Exploitable live argument in onClick Function leads to Data Leakage of Inactive/Suspended Products'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'bulldawg'
b'Authentication Bypass on https:///'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'prakhar0x01'
b'IDOR leads to PII Leak'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'prakhar0x01'
b'IDOR leads to view other user Biographical details (Possible PII LEAK)'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'prakhar0x01'
b'IDOR : Modify other users demographic details'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'bulldawg'
b'Automatic Admin Access'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'bulldawg'
b'Endpoint Redirects to Admin Page and Provides Admin role'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'tokyoenigma'
b'Local File Inclusion in download.php'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'XML External Entity (XXE) Injection'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'prakhar0x01'
b'Email Takeover leads to permanent account deletion'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'prakhar0x01'
b'Restrict any user from Login to their account'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'bulldawg'
b'Missing Access Control Allows for User Creation and Privilege Escalation '
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'sp1d3rs'
b'Unauthenticated arbitrary file upload on the https:/// (.mil)'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'matrixsoftsec'
b'Unauthenticated access to internal API at..edu [HtUS]'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'sp1d3rs'
b'XXE with RCE potential on the https:// (CVE-2017-3548)'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'sp1d3rs'
b'Authentication bypass and potential RCE on the https:// due to exposed Cisco TelePresence SX80 with default credentials'
19 Jul 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'sp1d3rs'
b'Unauth IDOR to mass account takeover without user interaction on the (https://.edu/)'
19 Jul 2024
1
...
35
36
37
38
39
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM