REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'RubyGems'
disclosed a bug submitted by
b'bugs3ra'
b'Host header Injection rubygems.org'
08 Feb 2018
b'Nextcloud'
disclosed a bug submitted by
b'icewater'
b'Registered users can change app password permissions for any user'
08 Feb 2018
b'Unikrn'
disclosed a bug submitted by
b'moritz30'
b'Non-Cloudflare IPs allowed to access origin servers'
07 Feb 2018
b'Ruby on Rails'
disclosed a bug submitted by
b'joernchen'
b'Unsafe Query Generation (CVE-2012-2660, CVE-2012-2694 and CVE-2013-0155) mitigation bypass'
07 Feb 2018
b'HackerOne'
disclosed a bug submitted by
b'kunal94'
b'ImageMagick GIF coder vulnerability leading to memory disclosure'
07 Feb 2018
b'Shopify'
disclosed a bug submitted by
b'cache-money'
b'Ability to bypass partner email confirmation to take over any store given an employee email'
07 Feb 2018
b'RBKmoney'
disclosed a bug submitted by
b'dutchgraa'
b'DOM-based Cross-Site Scripting in redirect url checkout'
07 Feb 2018
b'TTS Bug Bounty'
disclosed a bug submitted by
b'kunal94'
b'Concourse.ci for cloud.gov can be logged in and accessible'
07 Feb 2018
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'reptou'
b'Unrestricted access to Eureka server on ??????'
06 Feb 2018
b'Mail.Ru'
disclosed a bug submitted by
b'ruvlol'
b'Blind XXE on my.mail.ru'
06 Feb 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'bayotop'
b'[html-janitor] Bypassing sanitization using DOM clobbering'
05 Feb 2018
b'Rockstar Games'
disclosed a bug submitted by
b'h1danilabs'
b'Leak IP internal'
05 Feb 2018
b'WordPress'
disclosed a bug submitted by
b'hackerwahab'
b'UnResolved ChangeSet are Visible to Public That also Causes Information Disclosure'
05 Feb 2018
b'QIWI'
disclosed a bug submitted by
b'tsug0d'
b'apache access.log leakage via long request on https://rapida.ru/'
05 Feb 2018
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'severus'
b'Leak ?????????? information in real time through API request'
03 Feb 2018
b'WordPress'
disclosed a bug submitted by
b'abdullah'
b'Stored XSS in WordPress'
02 Feb 2018
b'HackerOne'
disclosed a bug submitted by
b'aidantwoods'
b'Reputation gain split by company can be used to track the existence of otherwise undisclosed reports'
02 Feb 2018
b'Kaspersky Lab'
disclosed a bug submitted by
b'ashishag29'
b'Keys'
02 Feb 2018
b'Zomato'
disclosed a bug submitted by
b'samengmg'
b'[https://reviews.zomato.com] Time Based SQL Injection'
02 Feb 2018
b'GitLab'
disclosed a bug submitted by
b'bnchandrapal'
b'Lack of validation before assigning custom domain names leading to abuse of GitLab pages service'
01 Feb 2018
1
...
482
483
484
485
486
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM