REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Valve'
disclosed a bug submitted by
b'zemnmez'
b'XSS in steam react chat client'
07 Jan 2019
b'HackerOne'
disclosed a bug submitted by
b'khoiasd'
b'Response program can create bounty table'
07 Jan 2019
b'CFP Time'
disclosed a bug submitted by
b'phsmile'
b'Missing Two Factor Authentication in /admin/login'
07 Jan 2019
b'Nextcloud'
disclosed a bug submitted by
b'ismailtsdln'
b'Information Exposure Through Directory Listing - https://apps.nextcloud.com/static/'
07 Jan 2019
b'CFP Time'
disclosed a bug submitted by
b'badcracker'
b'Error Page Content Spoofing or Text Injection'
07 Jan 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'cris_semmle'
b'Command Injection Vulnerability in kill-port Package'
06 Jan 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'skyn3t'
b'[buttle] Unsafe rendering of Markdown files'
06 Jan 2019
b'Liberapay'
disclosed a bug submitted by
b'gouveaheitor'
b'User Enumeration '
05 Jan 2019
b'HackerOne'
disclosed a bug submitted by
b'mga_bobo'
b"User login page doesn't implement any form of rate limiting"
04 Jan 2019
b'Inflection'
disclosed a bug submitted by
b'csanuragjain'
b'Malicious callback url can be set while creating application in identity'
03 Jan 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'shivasurya'
b'[static-resource-server] Path Traversal allows to read content of arbitrary file on the server'
03 Jan 2019
b'Smule'
disclosed a bug submitted by
b'fr_0_ank'
b'Disclosure of information about the system, configuration files.'
03 Jan 2019
b'HackerOne'
disclosed a bug submitted by
b'haxta4ok00'
b'Submitting report through Embedded Submission form gives user indefinite access to a profile'
03 Jan 2019
b'Khan Academy'
disclosed a bug submitted by
b'sameerphad72'
b'Creating Unlimited Fake Accounts.'
02 Jan 2019
b'HackerOne'
disclosed a bug submitted by
b'thefrog'
b'@wearehackerone.com is vulnerable to namespace attacks due to hackerone.com not being RFC2142 compliant.'
02 Jan 2019
b'RATELIMITED'
disclosed a bug submitted by
b'z0mb13'
b'Local File Download'
01 Jan 2019
b'VK.com'
disclosed a bug submitted by
b'shell_c0de'
b'???????? ????? WebView'
31 Dec 2018
b'RubyGems'
disclosed a bug submitted by
b'nmalkin'
b'Unpacker improperly validates symlinks, allowing gems writes to arbitrary locations'
31 Dec 2018
b'RATELIMITED'
disclosed a bug submitted by
b'wolfdroid'
b'Exposure of tinyMCE js source code with plugin version disclosure which can leads to exploit further attacks.'
29 Dec 2018
b'Infogram'
disclosed a bug submitted by
b'marataziat'
b'User account blocking by Internal Server error'
28 Dec 2018
1
...
421
422
423
424
425
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM