REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Liberapay'
disclosed a bug submitted by
b'emitrani'
b'Github Oauth is tied to username at /edit/elsewhere instead of email'
02 Dec 2018
b'HackerOne'
disclosed a bug submitted by
b'japz'
b'Revoking user session in https://hackerone.com/settings/sessions does not revoke the GraphQL query session'
30 Nov 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'asgerf'
b'Prototype pollution attack in node.extend'
30 Nov 2018
b'GoCD'
disclosed a bug submitted by
b'kiraak-boy'
b'Possible SSRF at URL Parameter while creating a new package repository'
30 Nov 2018
b'GoCD'
disclosed a bug submitted by
b'kiraak-boy'
b'Cross Site Scripting'
30 Nov 2018
b'GoCD'
disclosed a bug submitted by
b'kiraak-boy'
b'Reflected XSS'
30 Nov 2018
b'GoCD'
disclosed a bug submitted by
b'pradeepch99'
b'XSS in http://localhost:8153/go/admin/config/server/update'
30 Nov 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'cris_semmle'
b'Prototype Pollution Vulnerability in mpath Package'
30 Nov 2018
b'Riot Games'
disclosed a bug submitted by
b'haxta4ok00'
b'test'
30 Nov 2018
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'SQL injection in GraphQL endpoint through embedded_submission_form_uuid parameter'
30 Nov 2018
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Attacker can claim credentials for private program that has a published external program'
29 Nov 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'asgerf'
b'Prototype pollution attack in just-extend'
29 Nov 2018
b'Slack'
disclosed a bug submitted by
b'cryptographer'
b'The POODLE attack (SSLv3 supported) at status.slack.com'
28 Nov 2018
b'Infogram'
disclosed a bug submitted by
b'marataziat'
b'Is the 504 Gateway Time-out error ok?'
28 Nov 2018
b'Zomato'
disclosed a bug submitted by
b'ahd911'
b'[www.zomato.com] CORS Misconfiguration, could lead to disclosure of sensitive information'
28 Nov 2018
b'HackerOne'
disclosed a bug submitted by
b'haxta4ok00'
b'Hacker can request mediation for published reports'
27 Nov 2018
b'PHP (IBB)'
disclosed a bug submitted by
b'97ffb8d5'
b'Heap Use After Free Read in unserialize()'
27 Nov 2018
b'PHP (IBB)'
disclosed a bug submitted by
b'97ffb8d5'
b'Out of Bounds Memory Read in unserialize()'
27 Nov 2018
b'PHP (IBB)'
disclosed a bug submitted by
b'97ffb8d5'
b'Heap Use After Free in unserialize()'
27 Nov 2018
b'HackerOne'
disclosed a bug submitted by
b'madhu_anand'
b'IE only: stored Cross-Site Scripting (XSS) vulnerability through Program Asset identifier'
27 Nov 2018
1
...
426
427
428
429
430
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM