REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Node.js third-party modules'
disclosed a bug submitted by
b'patrickrbc'
b'Unrestricted file upload (RCE)'
02 Jun 2018
b'Twitter'
disclosed a bug submitted by
b'trabajoduro_2'
b'No Rate Limit in email leads to huge Mass mailings'
01 Jun 2018
b'PHP (IBB)'
disclosed a bug submitted by
b'97ffb8d5'
b'Heap Buffer Overflow (READ: 1786) in exif_iif_add_value'
01 Jun 2018
b'Mail.Ru'
disclosed a bug submitted by
b'arafat'
b'Clickjacking Vulnerability on https://support.my.com/games/ticket/xxxx/'
01 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'tungpun'
b'[serve] Directory listing and File access even when they have been set to be ignored'
31 May 2018
b'Valve'
disclosed a bug submitted by
b'milkgames'
b"GetReports works for hubs you don't have access to"
30 May 2018
b'Starbucks'
disclosed a bug submitted by
b'damian89'
b'Unauthorized access to jiratest.starbucks.com '
30 May 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'dienpv'
b'[localhost-now] bypassing url filter which leads to read content of arbitrary file'
30 May 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'tungpun'
b'[serve] Directory listing and File access even when they have been set to be ignored (using dot-slash)'
30 May 2018
b'VK.com'
disclosed a bug submitted by
b'pisarenko'
b'????????? ???????????? ?????????? ??????? '
30 May 2018
b'Zomato'
disclosed a bug submitted by
b'saltedfish'
b'[www.zomato.com] SQLi on `order_id` parameter'
30 May 2018
b'HackerOne'
disclosed a bug submitted by
b'japz'
b'Private program email forwarding response invitation not expire after first use.'
30 May 2018
b'GitLab'
disclosed a bug submitted by
b'strukt'
b'SSRF when importing a project from a git repo by URL'
29 May 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'defmax'
b"Command injection in 'pdf-image'"
29 May 2018
b'Mail.Ru'
disclosed a bug submitted by
b'mobius07'
b'???????? ?????????? phpinfo() ?? ????? https://agent.mail.ru'
29 May 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'bl4de'
b'[sexstatic] HTML injection in directory name(s) leads to Stored XSS when malicious file is embed with <iframe> element used in directory name'
29 May 2018
b'Mail.Ru'
disclosed a bug submitted by
b'catferq'
b'LFI in beta.mail.ru'
28 May 2018
b'Coalition, Inc.'
disclosed a bug submitted by
b'emitrani'
b'Non-Cloudflare IPs allowed to access origin servers'
28 May 2018
b'Dovecot'
disclosed a bug submitted by
b'k4nik4'
b'Buffer overflow in sha3'
27 May 2018
b'Snapchat'
disclosed a bug submitted by
b'esnard'
b'XSS found on Snapchat website'
26 May 2018
1
...
457
458
459
460
461
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM