REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Zomato'
disclosed a bug submitted by
b'bagipro'
b'[Zomato Android/iOS] Theft of user session'
17 Jun 2018
b'Reverb.com'
disclosed a bug submitted by
b'bagipro'
b'Disclosure of all uploads to Cloudinary via hardcoded api secret in Android app'
17 Jun 2018
b'ICQ'
disclosed a bug submitted by
b'iframe'
b'api.icq.com / ??????????? ?????????????? ? ?????? ???? (???? ?????????).'
17 Jun 2018
b'MapsMarker.com e.U.'
disclosed a bug submitted by
b'damian89'
b'[Informational] Possible SQL Injection in inc/ajax-actions-frontend.php'
17 Jun 2018
b'VK.com'
disclosed a bug submitted by
b'paul-raddoor'
b'[???????? email ? ????????] by admin@notify.vk.com | email-flood'
16 Jun 2018
b'Vanilla'
disclosed a bug submitted by
b'fiona'
b'Forum Users Information Disclosure'
16 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'mlucool'
b'npm packages that overlap with core node packages'
16 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'caioluders'
b'[git-dummy-commit] Command injection on the msg parameter'
15 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'greendog'
b'Insecure implementation of deserialization in funcster'
15 Jun 2018
b'Nextcloud'
disclosed a bug submitted by
b'reinism'
b'File access control rules not enforced on image files'
15 Jun 2018
b'Shopify'
disclosed a bug submitted by
b'tbh'
b'Improper access check by Kit leads to controlling attributes of store & getting analytics by deleted Store member via dual messenger A/C'
15 Jun 2018
b'Shopify'
disclosed a bug submitted by
b'rijalrojan'
b'Publicly Accessible Datadog link'
15 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'chalker'
b'`njwt` allocates uninitialized Buffers when number is passed in base64urlEncode input'
14 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'lirantal'
b'Remote Command Execution vulnerability in pullit'
14 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'bl4de'
b'[file-static-server] Path Traversal allows to read content of arbitrary file on the server'
14 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'chalker'
b'`utile` allocates uninitialized Buffers when number is passed in input'
14 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'chalker'
b'`put` allocates uninitialized Buffers when non-round numbers are passed in input'
14 Jun 2018
b'Vanilla'
disclosed a bug submitted by
b'samux'
b'A user can create an event in a group without being in it http://littleguy.vanillastaging.com/'
14 Jun 2018
b'Nextcloud'
disclosed a bug submitted by
b'samix'
b'Disclosed Version of PORTS SSH|HTTP|SSL'
14 Jun 2018
b'Dropbox'
disclosed a bug submitted by
b'zeq3ul'
b'Bypass Local Authentication (TouchID)'
13 Jun 2018
1
...
443
444
445
446
447
...
727
BY DENIS WERNER - @NOBBD -
IMPRESSUM