REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Kubernetes'
disclosed a bug submitted by
b'suanve'
b'Ingress nginx annotation injection causes arbitrary command execution'
24 Nov 2023
b'inDrive'
disclosed a bug submitted by
b'kristoferent'
b'Blind SQL injection on id.indrive.com'
24 Nov 2023
b'Liberapay'
disclosed a bug submitted by
b'0xthem7'
b'Password Reset Token Leak Via Referrer'
23 Nov 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'w0x42'
b'[CVE-2023-38546] cookie injection with none file'
23 Nov 2023
b'Glassdoor'
disclosed a bug submitted by
b'triple_h'
b"IDOR vulnerability on profile picture changing mechanism which discloses other user's profile picture."
22 Nov 2023
b'HackerOne'
disclosed a bug submitted by
b'0verw4tch'
b'Organization members can delete reports in teams they have no access to'
22 Nov 2023
b'Nextcloud'
disclosed a bug submitted by
b'alacn1'
b'user_ldap app logs user passwords in the log file on level debug'
21 Nov 2023
b'Nextcloud'
disclosed a bug submitted by
b'cx75fa'
b'Delete external storage of any user'
21 Nov 2023
b'Nextcloud'
disclosed a bug submitted by
b'cx75fa'
b'HTML injection in search UI when selecting a circle with HTML in the display name'
21 Nov 2023
b'Nextcloud'
disclosed a bug submitted by
b'nvz'
b'Enabling Birthday Contact to any user'
21 Nov 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'Full account takeover of any user through reset password'
17 Nov 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'r00tdaddy'
b'XSS in Cisco Endpoint'
17 Nov 2023
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'r00tdaddy'
b'Unathenticated file read (CVE-2020-3452) '
17 Nov 2023
b'Snowplow'
disclosed a bug submitted by
b'reefspek'
b'Unauthorised CocoaPods Auth via Token Leakage & HTTP Header Injection'
16 Nov 2023
b'FetLife'
disclosed a bug submitted by
b'deepblue29'
b'Able to see highest poll result without voting or view result'
15 Nov 2023
b'Mars'
disclosed a bug submitted by
b'skoll101'
b'debug.log File Exposure that exposes (user/) username and password at '
15 Nov 2023
b'Mars'
disclosed a bug submitted by
b'skoll101'
b'subdomain takeover at '
15 Nov 2023
b'Mars'
disclosed a bug submitted by
b'bx00'
b'**"CSRF Vulnerability in Royal Canin Website Allows Attackers to Change User Profile Picture at my.royalcanin.pt"**'
15 Nov 2023
b'Automattic'
disclosed a bug submitted by
b'secureighty'
b'reflected xss in https://wordpress.com/start/account/user'
15 Nov 2023
b'curl'
disclosed a bug submitted by
b'cyberguardianrd'
b'Buffer overflow and affected url:-https://github.com/curl/curl/blob/master/docs/examples/hsts-preload.c'
15 Nov 2023
1
...
38
39
40
41
42
...
717
BY DENIS WERNER - @NOBBD -
IMPRESSUM