REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'NordVPN'
disclosed a bug submitted by
b'shardulb_23'
b'Disclosure of User Information'
16 Jan 2020
b'MariaDB'
disclosed a bug submitted by
b'md15ev'
b'Exposed debug.log file leads to information disclosure'
15 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'verdaster'
b'Http response is not ended although underlying socket is already destroyed'
15 Jan 2020
b'Valve'
disclosed a bug submitted by
b'b0yd'
b'Arbitrary File Write as SYSTEM from unprivileged user'
15 Jan 2020
b'8x8'
disclosed a bug submitted by
b'0x496'
b'Reflected xss on 8x8.vc'
15 Jan 2020
b'DataStax'
disclosed a bug submitted by
b'priyanshuxo'
b'Helpdesk Takeover at dmc.datastax.com'
15 Jan 2020
b'Maker Ecosystem Growth Holding'
disclosed a bug submitted by
b'ardi4x'
b'Wordpress users disclosure on blog.makerdao.con'
15 Jan 2020
b'Maker Ecosystem Growth Holding'
disclosed a bug submitted by
b'0xbugger'
b'UNRESTRICTED FILE UPLOAD AT chat.makerdao.com'
15 Jan 2020
b'Maker Ecosystem Growth Holding'
disclosed a bug submitted by
b'offensive-security'
b'Two-factor authentication (2FA) Bypass'
15 Jan 2020
b'Maker Ecosystem Growth Holding'
disclosed a bug submitted by
b'm7mdharoun'
b'App Takeover ( makerdao.herokuapp.com )'
15 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'bayotop'
b'url.parse() hostname spoofing via javascript: URIs'
15 Jan 2020
b'curl'
disclosed a bug submitted by
b'vshmuk'
b'Port and service scanning on localhost due to improper URL validation.'
15 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'tunz'
b'Use After Free in crypto.randomFill'
15 Jan 2020
b'Node.js'
disclosed a bug submitted by
b'arkadiyt'
b'Http request splitting'
15 Jan 2020
b'Automattic'
disclosed a bug submitted by
b'godofdarkness_msf'
b'Theme Assets uploader allows HTML content'
14 Jan 2020
b'Automattic'
disclosed a bug submitted by
b'godofdarkness_msf'
b'Follow by email allows for following by unverified emails'
14 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'mickey01'
b'Information disclosure with sensitive data'
14 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'mobius07'
b'API method at api.my.games allows to enumerate user emails'
14 Jan 2020
b'DRIVE.NET, Inc.'
disclosed a bug submitted by
b'dre4dp1r4terob3rts'
b'Same site Scripting '
13 Jan 2020
b'Razer'
disclosed a bug submitted by
b'namunah'
b'Misconfigured s3 Bucket exposure'
12 Jan 2020
1
...
368
369
370
371
372
...
768
BY DENIS WERNER - @NOBBD -
IMPRESSUM