Browse all 470 CVE security advisories affecting HackerOne. AI-powered Chinese analysis, POCs, and references for each vulnerability.
HackerOne operates a crowdsourced vulnerability disclosure platform, connecting organizations with ethical hackers to identify and remediate security flaws before malicious exploitation. The platform’s extensive record of 470 CVEs highlights a diverse attack surface, with historically common vulnerability classes including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation. These defects often stem from complex API integrations and web application logic errors inherent in its SaaS infrastructure. Notable security characteristics involve its reliance on third-party researchers, which introduces both robust coverage and potential insider threat vectors. While major public incidents have been relatively contained, the platform’s role as a central hub for vulnerability data makes it a high-value target for attackers seeking to disrupt the disclosure ecosystem or harvest sensitive intelligence. Maintaining strict access controls and transparent reporting mechanisms remains critical for preserving trust and ensuring the integrity of the bug bounty process across its global user base.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2016-10643 | jstestdriver 安全漏洞 — jstestdriver node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10644 | slimerjs-edge 安全漏洞 — slimerjs-edge node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10645 | grunt-images 安全漏洞 — grunt-images node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10646 | resourcehacker 安全漏洞 — resourcehacker node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10647 | node-air-sdk 安全漏洞 — node-air-sdk node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10648 | marionette-socket-host 安全漏洞 — marionette-socket-host node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10649 | frames-compiler 安全漏洞 — frames-compiler node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10651 | webdriver-launcher 安全漏洞 — webdriver-launcher node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10652 | prebuild-lwip 安全漏洞 — prebuild-lwip node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10653 | xd-testing 安全漏洞 — xd-testing node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10654 | sfml 安全漏洞 — sfml node module CWE-311 | 7.4 | - | 2018-06-04 |
| CVE-2016-10655 | clang-extra 安全漏洞 — clang-extra node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10656 | qbs 安全漏洞 — qbs node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10657 | co-cli-installer 安全漏洞 — co-cli-installer node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10660 | fis-parser-sass-bin 安全漏洞 — fis-parser-sass-bin node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10661 | phantomjs-cheniu 安全漏洞 — phantomjs-cheniu node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10662 | tomita 安全漏洞 — tomita node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10663 | wixtoolset 安全漏洞 — wixtoolset node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10664 | msystem 安全漏洞 — mystem node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10665 | herbivore 安全漏洞 — herbivore node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10667 | selenium-portal 安全漏洞 — selenium-portal node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10668 | libsbml 安全漏洞 — libsbml node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10669 | soci 安全漏洞 — soci node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10670 | windows-seleniumjar-mirror 安全漏洞 — windows-seleniumjar-mirror node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10671 | mystem-wrapper 安全漏洞 — mystem-wrapper node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10672 | cloudpub-redis 安全漏洞 — cloudpub-redis node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10673 | ipip-coffee 安全漏洞 — ipip-coffee node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10675 | libsbmlsim 安全漏洞 — libsbmlsim node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10676 | rs-brightcove 安全漏洞 — rs-brightcove node module CWE-311 | 8.1 | - | 2018-06-04 |
| CVE-2016-10677 | google-closure-tools-latest 安全漏洞 — google-closure-tools-latest node module CWE-311 | 8.1 | - | 2018-06-04 |
This page lists every published CVE security advisory associated with HackerOne. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.