REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'IBM'
disclosed a bug submitted by
b'redyetihacks'
b'XSS in Aspera documentation website'
06 May 2024
b'Liberapay'
disclosed a bug submitted by
b'mrrobot2050'
b'Unsafe yaml load can lead to remote code execution'
04 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'Reflected XSS via Keycloak on [CVE-2021-20323]'
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'reflected xss [CVE-2020-3580]'
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'neg0x'
b'Reflected Cross-site Scripting via search query on '
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'kurogai'
b'Reflected XSS on error message on Login Page'
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'maskedpersian'
b'Reflected XSS via Moodle on [CVE-2022-35653]'
03 May 2024
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'neg0x'
b"SQL injection on via 'where' parameter"
03 May 2024
b'Node.js'
disclosed a bug submitted by
b'uzlopak'
b'fetch with integrity option is too lax when algorithm is specified but hash value is in incorrect'
03 May 2024
b'Node.js'
disclosed a bug submitted by
b'iylz'
b'Proxy-Authorization header not cleared on cross-origin redirect in undici.request'
03 May 2024
b'Node.js'
disclosed a bug submitted by
b'bpingel'
b'HTTP Request Smuggling via Content Length Obfuscation'
03 May 2024
b'Adobe'
disclosed a bug submitted by
b'renzi'
b"Adobe Experience Manager 'Childlist selector' - Cross-Site Scripting on cbconnection.adobe.com"
02 May 2024
b'Deriv.com'
disclosed a bug submitted by
b'zacian'
b'Mailgun subdomain takeover '
02 May 2024
b'Shopify'
disclosed a bug submitted by
b'ryanmoles6'
b'Production Key and Data Found on Subdomain No Longer Operated by Shopify / Dangling DNS'
01 May 2024
b'Shopify'
disclosed a bug submitted by
b'niraj1mahajan'
b'No Session Expiry after log-out, attacker can reuse the old cookies'
01 May 2024
b'IBM'
disclosed a bug submitted by
b'suryahss'
b'Insecure Direct Object Reference Protection bypass by changing HTTP method in IBM Your Learning endpoint. '
01 May 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'bart'
b'Assertion failed in node::http2::Http2Session::~Http2Session() leads to HTTP/2 server crash'
29 Apr 2024
b'HackerOne'
disclosed a bug submitted by
b'xklepxn'
b'Attachment disclosure via summary report '
29 Apr 2024
b'Hyperledger'
disclosed a bug submitted by
b'another_dude'
b'Code exec on Github runner via Pull request name'
28 Apr 2024
b'Internet Bug Bounty'
disclosed a bug submitted by
b'parantheses'
b'CVE-2024-25128: Apache Airflow: Authentication Bypass when Legacy OpenID(2.0) is in use as AUTH_TYPE'
28 Apr 2024
1
...
44
45
46
47
48
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM