REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Upserve '
disclosed a bug submitted by
b'bobrov'
b'[theacademy.upserve.com] Reflected XSS Query-String'
19 Oct 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'tungpun'
b'[serve] Stored XSS in the filename when directories listing'
19 Oct 2018
b'Gatecoin'
disclosed a bug submitted by
b'bobrov'
b'DOM Based XSS charting_library'
19 Oct 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'skyn3t'
b'[serve] XSS via HTML tag injection in directory lisiting page'
19 Oct 2018
b'New Relic'
disclosed a bug submitted by
b'rootbakar'
b'WordPress username enumeration (/author)'
18 Oct 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'abdilahrf_'
b'[apex-publish-static-files] Command Injection on connectString'
18 Oct 2018
b'LinkedIn'
disclosed a bug submitted by
b'jonathanbouman'
b'Persistent XSS (unvalidated Open Graph embed) at LinkedIn.com'
18 Oct 2018
b'Chaturbate'
disclosed a bug submitted by
b'yuvraj_dighe'
b'Update Chat Allowed By Option ( without age verification )'
18 Oct 2018
b'Chaturbate'
disclosed a bug submitted by
b'glc'
b'XSS on secure.chaturbate through SWF'
18 Oct 2018
b'Cloudflare'
disclosed a bug submitted by
b'cujanovic'
b'DOM XSS on 1.1.1.1(one.one.one.one)'
17 Oct 2018
b'Rockstar Games'
disclosed a bug submitted by
b'richardcao'
b'Exploiting Misconfigured CORS to Steal User Information'
17 Oct 2018
b'Rockstar Games'
disclosed a bug submitted by
b'dhananjaygarg19'
b'Found CSRF Vulnerability in https://support.rockstargames.com/'
16 Oct 2018
b'DuckDuckGo'
disclosed a bug submitted by
b'cujanovic'
b'DOM XSS on 50x.html page'
16 Oct 2018
b'Tor'
disclosed a bug submitted by
b'greenwolf'
b'Email Spoofing Possible on torproject.org Email Domain'
16 Oct 2018
b'Starbucks'
disclosed a bug submitted by
b'radoooz'
b'DVR default username and password'
15 Oct 2018
b'New Relic'
disclosed a bug submitted by
b'jon_bottarini'
b'[NR Insights] Pull any Insights/NRQL data from any NR account'
15 Oct 2018
b'PHP (IBB)'
disclosed a bug submitted by
b'fms'
b'linkinfo - openbasedir bypass on Windows PHP'
15 Oct 2018
b'Stellar.org'
disclosed a bug submitted by
b'nebolsin'
b"It's possible to put SDX orderbook into invalid state and execute trades at arbitrary price"
14 Oct 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'cris_semmle'
b'Command Injection Vulnerability in libnmap Package'
14 Oct 2018
b'Stellar.org'
disclosed a bug submitted by
b'orbitlens'
b'Exploitable vulnerability in SDEX'
14 Oct 2018
1
...
460
461
462
463
464
...
766
BY DENIS WERNER - @NOBBD -
IMPRESSUM