REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'GitLab'
disclosed a bug submitted by
b'8ayac'
b'Stored XSS on Issue details page'
30 Oct 2018
b'Dropbox'
disclosed a bug submitted by
b'paulos_'
b'Dropbox Paper - Markdown XSS'
29 Oct 2018
b'Automattic'
disclosed a bug submitted by
b'paulos_'
b'Multiple File Manipulation bugs in WP Super Cache '
29 Oct 2018
b'Apache httpd (IBB)'
disclosed a bug submitted by
b'97ffb8d5'
b'DoS for HTTP/2 connections by crafted requests (CVE-2018-1333)'
28 Oct 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'cris_semmle'
b'Code Injection Vulnerability in morgan Package'
28 Oct 2018
b'Flock'
disclosed a bug submitted by
b'prial261'
b'Subdomain takeover dew to missconfigured project settings for Custom domain\xc2\xa0.'
26 Oct 2018
b'VK.com'
disclosed a bug submitted by
b'norver'
b'[??????/Android] ???????????? BroadcastReceiver ????????? ????????? ???? ??????? ? ?????????? ??????????? ??????? ????????????????? ??????????'
26 Oct 2018
b'HackerOne'
disclosed a bug submitted by
b'popeax'
b'Improper UUID validation results in bypass of #419896'
25 Oct 2018
b'HackerOne'
disclosed a bug submitted by
b'haxta4ok00'
b'User with privilege to maintain External Programs can update certain churned HackerOne programs'
25 Oct 2018
b'Nextcloud'
disclosed a bug submitted by
b'frankspierings'
b'Session fixation in password protected public download.'
25 Oct 2018
b'Nextcloud'
disclosed a bug submitted by
b'bugdiscloseguys'
b'Authentication Issue'
25 Oct 2018
b'Vanilla'
disclosed a bug submitted by
b'balis0ng'
b'A SQL injection vulnerability in Vanilla'
25 Oct 2018
b'Chaturbate'
disclosed a bug submitted by
b'glc'
b'Open redirect on chaturbate.com (tipping/purchase_success)'
25 Oct 2018
b'Starbucks'
disclosed a bug submitted by
b'jackds'
b'Sidekiq web UI (Ruby background processing) accessible unauthenticated via https://gift-test.starbucks.co.jp/sidekiq/busy'
24 Oct 2018
b'Brave Software'
disclosed a bug submitted by
b'qab'
b'chrome://brave navigation from web'
23 Oct 2018
b'Brave Software'
disclosed a bug submitted by
b'qab'
b'chrome://brave can still be navigated to, leading to RCE'
23 Oct 2018
b'Rockstar Games'
disclosed a bug submitted by
b'richardcao'
b"Smuggle SocialClub's Facebook OAuth Code via Referer Leakage"
23 Oct 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'webtonull'
b'Samlify is vulnerable to signature wrapping'
23 Oct 2018
b'h1-5411-CTF'
disclosed a bug submitted by
b'osintopsec'
b'MemeCTF serial exploitation to local file read to Papertrail access via API-token leakage and more'
22 Oct 2018
b'Brave Software'
disclosed a bug submitted by
b'metnew'
b"RCE: DnDing shortcut files to chrome://brave allows loading HTML files in Muon's context"
22 Oct 2018
1
...
433
434
435
436
437
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM