REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
65
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Node.js third-party modules'
disclosed a bug submitted by
b'tungpun'
b'[mcstatic] Server Directory Traversal'
12 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'tungpun'
b'[html-pages] Stored XSS in the filename when directories listing'
12 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'tungpun'
b'[public] Stored XSS in the filename when directories listing'
12 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'cardangi'
b'No Data Validation, No Captcha, No Filters...'
11 Jun 2018
b'QIWI'
disclosed a bug submitted by
b'danila_xawdxawdx'
b'Imformation Disclosure on id.rapida.ru'
11 Jun 2018
b'Mail.Ru'
disclosed a bug submitted by
b'maxarr'
b'XSS ? ???????????, ????-?????? ?????'
10 Jun 2018
b'Mail.Ru'
disclosed a bug submitted by
b'maxarr'
b'XSS ? ???? ??????.'
10 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'said778'
b'Cross site scripting (content-sniffing)'
10 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'kaushalag29'
b'Buffer overflow'
10 Jun 2018
b'Algolia'
disclosed a bug submitted by
b'n00bsec'
b'Directory traversal at https://msg.algolia.com'
09 Jun 2018
b'Starbucks'
disclosed a bug submitted by
b'b3nac'
b'Host header injection/redirection via newsletter signup'
08 Jun 2018
b'Mail.Ru'
disclosed a bug submitted by
b'zishanadthandar'
b'Modifying application settings via clickjacking on o2.mail.ru'
08 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'mks11nov'
b'A single user can subscribe a community multiple times'
07 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'kunal94'
b'Punny code Detection Parsing should be implemented on Markdown '
07 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'zir0x'
b'Returning back from the browser after logging off will disclose some information'
07 Jun 2018
b'Vend'
disclosed a bug submitted by
b'stok'
b'Race Condition : Exploiting the loyalty claim https://xxx.vendhq.com/loyalty/claim/email/xxxxx url and gain x amount of loyalty bonus/cash'
07 Jun 2018
b'HackerOne'
disclosed a bug submitted by
b'japz'
b'Exposing hackerone users personally identifiable information by abusing sandbox with swag reward enabled'
07 Jun 2018
b'HackerOne'
disclosed a bug submitted by
b'herrera'
b'Lack of cross-origin request blocking allows leaking of sensitive information on several endpoints'
07 Jun 2018
b'Tor'
disclosed a bug submitted by
b'metnew'
b'Tor Browser: iframe with `data:` uri has access to parent window'
06 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'kapytein'
b"Exploiting JSONP callback on /username/charts.json endpoint leads to information disclosure despite user's privacy settings"
05 Jun 2018
1
...
463
464
465
466
467
...
746
BY DENIS WERNER - @NOBBD -
IMPRESSUM