Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Bug Bounty Intelligence

Source: HackerOne public disclosures · updated every 6h

Browse publicly disclosed bug bounty reports from HackerOne. Filter by severity, weakness type, or program. Cross-referenced with CVE IDs where available.

Disclosed Reports
12,219
CVE-linked
1,854
Programs
342
New This Week
10
Program filter: legalrobot
Improper Implementation of Password strength checker
Legal Robot Violation of Secure Design Principles (CWE-657)
None
2017-11-10
Non-HTTPS link on blog
Legal Robot Violation of Secure Design Principles (CWE-657)
None
2017-10-20
Venturebeat.com URL should be HTTPS
Legal Robot Violation of Secure Design Principles (CWE-657)
Unknown
2017-10-20
External links should be served in HTTPS.
Legal Robot Violation of Secure Design Principles (CWE-657)
Low
2017-10-19
Wrong password validation message
Legal Robot Violation of Secure Design Principles (CWE-657)
None
2017-10-04
Allowance of Meta/Null characters
Legal Robot Violation of Secure Design Principles (CWE-657)
Medium
2017-10-04
Failed OutLink on Terms of Service
Legal Robot Violation of Secure Design Principles (CWE-657)
Unknown
2017-09-20
Password Policy Bypass
Legal Robot Violation of Secure Design Principles (CWE-657)
Low
2017-08-28
Password complexity not evenly enforced
Legal Robot Violation of Secure Design Principles (CWE-657)
Low
2017-08-26
Change password session fixed
Legal Robot Violation of Secure Design Principles (CWE-657)
Low
2017-08-24
Subdomain misconfiguration [mail.legalrobot.com]
Legal Robot Violation of Secure Design Principles (CWE-657)
Unknown
2017-07-31
Email spoofing possible via Legal Robot domain
Legal Robot Violation of Secure Design Principles (CWE-657)
Unknown
2017-01-21
Validation bypass on user profile
Legal Robot Violation of Secure Design Principles (CWE-657)
Unknown
2017-01-20
unsecured legalrobot.co.uk assets
Legal Robot Violation of Secure Design Principles (CWE-657)
Unknown
2016-10-05
Unknown
2016-09-12
Possible content spoofing due to missing error page
Legal Robot Violation of Secure Design Principles (CWE-657)
Unknown
2016-09-06
Unknown
2016-08-31
Top Weakness Types
Most Active Programs
ProgramReportsMax $
U.S. Dept Of Defense896
Internet Bug Bounty817
HackerOne609
Nextcloud582
Shopify464
curl439
Node.js third-party modules307
GitLab258
X / xAI250 $2,500
Uber239 $9,895