REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'ExpressionEngine'
disclosed a bug submitted by
b'strukt'
b'Remote Code Execution in the Import Channel function'
04 Apr 2018
b'Airbnb'
disclosed a bug submitted by
b'bobrov'
b'[airbnb.com] XSS via Cookie flash'
03 Apr 2018
b'Airbnb'
disclosed a bug submitted by
b'bobrov'
b'[m.airbnb.com] CRLF Injection'
03 Apr 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'bl4de'
b'[crud-file-server] Path Traversal allows to read arbitrary file from the server'
03 Apr 2018
b'Shopify'
disclosed a bug submitted by
b'bored-engineer'
b'XSS on "widgets.shopifyapps.com" via "stripping" attribute and "shop" parameter'
03 Apr 2018
b'Mail.Ru'
disclosed a bug submitted by
b'obmihail'
b'blind XXE in autodiscover parser'
03 Apr 2018
b'Zomato'
disclosed a bug submitted by
b'mrtn'
b'Outdated MediaElement.js Reflected Cross-Site Scripting (XSS)'
02 Apr 2018
b'MyCrypto'
disclosed a bug submitted by
b'sup3r-b0y'
b'Reflected XSS { support.mycrypto.com }'
02 Apr 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'chalker'
b'`https-proxy-agent` passes unsanitized options to Buffer(arg), resulting in DoS and uninitialized memory leak'
02 Apr 2018
b'VK.com'
disclosed a bug submitted by
b'trainzment'
b'???????? ?????? ????? ?? ??????? ?????? ? ??? ????????'
02 Apr 2018
b'VK.com'
disclosed a bug submitted by
b'executor'
b'clickjacking ? /lead_forms_app.php'
02 Apr 2018
b'Twitter'
disclosed a bug submitted by
b'molejarka'
b'[sms-be-vip.twitter.com] vulnerable to Jetleak'
02 Apr 2018
b'Coinbase'
disclosed a bug submitted by
b'cablej'
b'Prepopulation of email address and name leaks information provided to other merchants'
02 Apr 2018
b'Coinbase'
disclosed a bug submitted by
b'cablej'
b'Stored CSS Injection'
02 Apr 2018
b'Mail.Ru'
disclosed a bug submitted by
b'opnsec'
b'Same origin policy bypass on e.mail.ru via Cross-Site Flashing'
02 Apr 2018
b'Ruby'
disclosed a bug submitted by
b'ooooooo_q'
b'Unintentional file creation caused at Tempfile with directory traversal'
01 Apr 2018
b'Ruby'
disclosed a bug submitted by
b'ooooooo_q'
b'The possibility that unintended file operation may be performed because some methods of `Dir` do not check NULL characters.'
01 Apr 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'chalker'
b'`protobufjs` is vulnerable to ReDoS when parsing crafted invalid *.proto files'
31 Mar 2018
b'LocalTapiola'
disclosed a bug submitted by
b'mr_edwards'
b'Single user DOS on selectedLanuage -cookie at (verkkopalvelu.tapiola.fi)'
31 Mar 2018
b'Ruby'
disclosed a bug submitted by
b'ooooooo_q'
b'Unix domain socket and a path containing a null character'
31 Mar 2018
1
...
470
471
472
473
474
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM