REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF - RSS feed, blacklist bypass (301 re-direct)'
05 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF - Blacklist bypass for mail account addition'
05 Jul 2019
b'VK.com'
disclosed a bug submitted by
b'povargek'
b'??????? 2FA ?/??? ???????? access_token, ???? ?? ?????-???? ???? ?? ???????? ??????'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b's1ck-sec'
b'Stored XSS in Email attachment file name'
04 Jul 2019
b'Shopify'
disclosed a bug submitted by
b'pklfpklf'
b'HTML injection in https://interviewing.shopify.com/index.php?candidate='
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'SSRF - RSS feed, blacklist bypass (IP Formatting)'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'logan5'
b'IDOR - setAttribute action of user object in API'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'ranjit_p'
b'IDOR to view other user folder name'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'ranjit_p'
b'IDOR allow to extract all registered email'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'mishre'
b'Adding external participants to unaccessible appointments'
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'mishre'
b"[IDOR] Deleting other people's tasks"
04 Jul 2019
b'OX App Suite'
disclosed a bug submitted by
b'chihuahua'
b'store xss in calendar via upload filename'
04 Jul 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'inkz'
b'[domokeeper] Unintended Require'
04 Jul 2019
b'ZEIT'
disclosed a bug submitted by
b'morax'
b'Access control bypass leads to domain information disclosure'
04 Jul 2019
b'GitLab'
disclosed a bug submitted by
b'yashrs'
b'Attacker is able to access commit title and team member comments which are supposed to be private'
03 Jul 2019
b'Twitter'
disclosed a bug submitted by
b'protostar0'
b'cookie injection allow dos attack to periscope.tv'
03 Jul 2019
b'Trint Ltd'
disclosed a bug submitted by
b'toannc123'
b'IDOR to update folder name of other user'
03 Jul 2019
b'Zomato'
disclosed a bug submitted by
b'madguyyy'
b'Self-Stored XSS - Chained with login/logout CSRF'
03 Jul 2019
b'Monero'
disclosed a bug submitted by
b'anonimal'
b'CryptoNote: remote node DoS'
03 Jul 2019
b'Monero'
disclosed a bug submitted by
b'talko'
b'Excessive Resource Usage'
03 Jul 2019
1
...
393
394
395
396
397
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM