REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Uber'
disclosed a bug submitted by
b'gregoryvperry'
b'The Microsoft Store Uber App Does Not Implement Server-side Token Revocation'
24 Dec 2017
b'Uber'
disclosed a bug submitted by
b'gregoryvperry'
b'The Microsoft Store Uber App Does Not Implement Certificate Pinning'
24 Dec 2017
b'Twitter'
disclosed a bug submitted by
b'avinash_'
b'Open Redirect Protection Bypass'
23 Dec 2017
b'Mapbox'
disclosed a bug submitted by
b'aneeskhan'
b'Admin Panel Accessed (OAuth Bypassed ) '
21 Dec 2017
b'Zendesk'
disclosed a bug submitted by
b'yckul'
b'Secret API Key Leakage via Query String'
20 Dec 2017
b'Zendesk'
disclosed a bug submitted by
b'sergeym'
b'dom based xss in *.zendesk.com/external/zenbox/'
20 Dec 2017
b'Razer US'
disclosed a bug submitted by
b'edio'
b'Open redirect in razer-id.razerzone.com via the redirect parameter.'
20 Dec 2017
b'Razer US'
disclosed a bug submitted by
b'niwasaki'
b'Reflected XSS in razer-id.razerzone.com'
20 Dec 2017
b'Mail.Ru'
disclosed a bug submitted by
b'ruvlol'
b'Possibility to view subdepartments for arbitrary domain'
20 Dec 2017
b'Inflection'
disclosed a bug submitted by
b'protector47'
b'Goodhire Open Redirect'
20 Dec 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'mrtuxracer'
b'UniFi Video v3.2.2 (Windows) Local Privileges Escalation due to weak default install directory ACLs'
20 Dec 2017
b'Ed'
disclosed a bug submitted by
b'karel_origin'
b'Fix for self-DoS in Security-txt Chrome Extension.'
19 Dec 2017
b'Open-Xchange'
disclosed a bug submitted by
b'dejavuln'
b'OX Guard: DOM Based Cross-Site Scripting'
19 Dec 2017
b'Open-Xchange'
disclosed a bug submitted by
b'dejavuln'
b'OX Guard: DOM Based Cross-Site Scripting (#2)'
19 Dec 2017
b'Deconf'
disclosed a bug submitted by
b'0ways'
b'Unauthenticated Reflected XSS in admin dashboard'
19 Dec 2017
b'Shopify'
disclosed a bug submitted by
b'protector47'
b'Cross-site scripting in "Contact customer" form'
19 Dec 2017
b'Ruby'
disclosed a bug submitted by
b'staaldraad'
b'NET::Ftp allows command injection in filenames'
19 Dec 2017
b'Legal Robot'
disclosed a bug submitted by
b'shankar'
b'Non-secure requests are not automatically upgraded to HTTPS'
19 Dec 2017
b'Ed'
disclosed a bug submitted by
b'sp1d3rs'
b'Chrome Extension is vulnerable to the self-DOS issues in case it process the security.txt with a big size'
18 Dec 2017
b'Informatica'
disclosed a bug submitted by
b'shogunlab'
b'[marketplace.informatica.com] - Sensitive Data Exposure '
18 Dec 2017
1
...
486
487
488
489
490
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM