REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'ICQ'
disclosed a bug submitted by
b'jplopezy'
b'FLV FILE FORMAT (AUDIOSES.DLL) Out of Bounds'
06 Jul 2019
b'Automattic'
disclosed a bug submitted by
b'ksapphire'
b'Gaining unlimited bonus points on websites with WooCommerce Points and Rewards'
05 Jul 2019
b'Shopify'
disclosed a bug submitted by
b'ngalog'
b'[Privilege Escalation] Shopify Admin -- Permission from Settings to Customer'
05 Jul 2019
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Custom Field Attributes may be created and updated for customers with Custom Field Trial enabled'
05 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF in VCARD photo upload functionality'
05 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF in /appsuite/api/autoconfig '
05 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF - RSS feed, blacklist bypass (301 re-direct)'
05 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF - Blacklist bypass for mail account addition'
05 Jul 2019
b'VK.com'
disclosed a bug submitted by
b'povargek'
b'??????? 2FA ?/??? ???????? access_token, ???? ?? ?????-???? ???? ?? ???????? ??????'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b's1ck-sec'
b'Stored XSS in Email attachment file name'
04 Jul 2019
b'Shopify'
disclosed a bug submitted by
b'pklfpklf'
b'HTML injection in https://interviewing.shopify.com/index.php?candidate='
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF - RSS feed, blacklist bypass (IP Formatting)'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'IDOR - setAttribute action of user object in API'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'ranjit_p'
b'IDOR to view other user folder name'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'ranjit_p'
b'IDOR allow to extract all registered email'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'mishre'
b'Adding external participants to unaccessible appointments'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'mishre'
b"[IDOR] Deleting other people's tasks"
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'chihuahua'
b'store xss in calendar via upload filename'
04 Jul 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'inkz'
b'[domokeeper] Unintended Require'
04 Jul 2019
b'ZEIT'
disclosed a bug submitted by
b'morax'
b'Access control bypass leads to domain information disclosure'
04 Jul 2019
1
...
389
390
391
392
393
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM