966 | Adobe Reader - XFA - ANSI-Unicode Confusion Information Leak |
Memory corruption |
Adobe |
Ashfaq Ansari (@HackSysTeam) |
Bug Bounty | 2022-10-13 | 2023-06-13 |
953 | [CVE-2022-1786] A Journey To The Dawn |
Use-After-Free
Memory corruption
Local Privilege Escalation |
Google (kCTF)
Linux Kernel Organization |
kylebot (@ky1ebot) |
Bug Bounty | 2022-10-15 | 2023-06-13 |
946 | Guest Blog Post - Memory corruption vulnerabilities in Edge |
Browser hacking
Memory corruption
Use-After-Free
Out-of-bounds Read
Out-of-bounds Write |
Microsoft |
David Erceg (@david_erceg) |
Bug Bounty | 2022-10-17 | 2023-06-13 |
939 | Vulnerabilities in Tenda%27s W15Ev2 AC1200 Router |
OS command injection
Buffer Overflow
Memory corruption
Stored XSS
Authorization flaw
Information disclosure |
Tenda |
Olivier Laflamme (@olivier_boschko) |
Bug Bounty | 2022-10-19 | 2023-06-13 |
927 | SHA-3 Buffer Overflow |
Buffer Overflow
Memory corruption
Cryptographic issues |
XKCP
Apple
Python
PHP
PyPy
SHA3 for Ruby |
Nicky Mouha |
Bug Bounty | 2022-10-20 | 2023-06-13 |
912 | Stranger Strings: An exploitable flaw in SQLite |
Memory corruption
Buffer Overflow
DoS |
SQLite |
Andreas Kellas |
Bug Bounty | 2022-10-25 | 2023-06-13 |
883 | A tale of a simple Apple kernel bug |
Out-of-bounds Read
Memory corruption
MacOS
iOS |
Apple |
Jordy Zomer (@pwningsystems) |
Bug Bounty | 2022-10-31 | 2023-06-13 |
879 | CVE−2022-3602: Punycode buffer overflow in OpenSSL |
Memory corruption
DoS |
OpenSSL |
Colm MacCárthaigh (@colmmacc) |
Bug Bounty | 2022-11-01 | 2023-06-13 |
861 | CVE-2022-26730 | ColorSync | Hoyt LLC |
MacOS
Memory corruption
RCE |
Apple |
David Hoyt (@h02332) |
Bug Bounty | 2022-11-05 | 2023-06-13 |
852 | Netgear Nighthawk R7000P AWS_JSON Unauthenticated Double Stack Overflow Vulnerability |
Memory corruption |
Netgear |
Jean-Jamil Khalife |
Bug Bounty | 2022-11-09 | 2023-06-13 |
795 | SSD Advisory – NETGEAR R7800 AFPD PreAuth |
Memory corruption
Buffer Overflow |
Netgear |
- |
Bug Bounty | 2022-11-22 | 2023-06-13 |
789 | CVE-2022-32898: ANE_ProgramCreate() multiple kernel memory corruption |
Memory corruption
iOS
Kernel hacking |
Apple |
simo (@_simo36) |
Bug Bounty | 2022-11-23 | 2023-06-13 |
752 | VLC : Integer overflow in vnc module <= 3.0.18 CVE-2022-41325 |
Memory corruption
Integer overflow |
VLC |
0xMitsurugi |
Bug Bounty | 2022-11-30 | 2023-06-13 |
726 | TheHole New World - how a small leak will sink a great browser (CVE-2021-38003) |
Memory corruption
RCE |
Google (Chrome) |
Bruce Chen (@bruce30262) |
Bug Bounty | 2022-12-06 | 2023-06-13 |
687 | Foxit PDF Reader - Use after Free - Remote Code Execution Exploit - CVE-2022-28672 |
Memory corruption
Use-After-Free |
Foxit |
Ashfaq Ansari (@HackSysTeam) |
Bug Bounty | 2022-12-16 | 2023-06-13 |
658 | ENLBufferPwn (CVE-2022-47949) |
Buffer Overflow
Memory corruption
RCE |
Nintendo |
PabloMK7 (@Pablomf6) |
Bug Bounty | 2022-12-22 | 2023-06-13 |
577 | Security Audit of Git |
Memory corruption
Out-of-bounds Write
Out-of-bounds Read |
Git |
Markus Vervier (@marver) |
Bug Bounty | 2023-01-17 | 2023-06-13 |
572 | Nothing new under the Sun – Discovering and exploiting a CDE bug chain |
Printer hacking
Local Privilege Escalation
Memory corruption
Buffer Overflow |
Oracle |
Marco Ivaldi / Raptor (@0xdea) |
Bug Bounty | 2023-01-18 | 2023-06-13 |
559 | Dissecting and Exploiting TCP/IP RCE Vulnerability “EvilESP” |
Kernel hacking
Windows
RCE
Memory corruption
Buffer Overflow |
Microsoft (Windows) |
Valentina Palmiotti (@chompie1337) |
Bug Bounty | 2023-01-20 | 2023-06-13 |
535 | CVE-2022-44789 |
Memory corruption
Use-After-Free
RCE
Security code review |
Artifex MuJS |
Alvin Ng (@alngpwn) |
Bug Bounty | 2023-01-28 | 2023-06-13 |
534 | Adobe Acrobat Reader - resetForm - CAgg UaF - RCE Exploit - CVE-2023-21608 |
Memory corruption
Use-After-Free
RCE |
Adobe |
Ashfaq Ansari (@HackSysTeam) |
Bug Bounty | 2023-01-28 | 2023-06-13 |
515 | CVE-2023-22374: F5 BIG-IP Format String Vulnerability |
Format string vulnerability
Memory corruption |
F5 |
Ron Bowes (@iagox86) |
Bug Bounty | 2023-02-01 | 2023-06-13 |
459 | Exploiting A Remote Heap Overflow With A Custom TCP Stack |
Memory corruption
RCE |
Western Digital |
Etienne Helluy-Lafont |
Bug Bounty | 2023-02-13 | 2023-06-13 |
452 | cURL audit: How a joke led to significant findings |
Memory corruption |
Internet Bug Bounty (curl) |
Maciej Domanski |
Bug Bounty | 2023-02-14 | 2023-06-13 |
424 | ClamAV Critical Patch Review |
RCE
Memory corruption
Buffer Overflow
XXE
Security code review |
ClamAV |
ONEKEY (@onekey_sec) |
Bug Bounty | 2023-02-21 | 2023-06-13 |