Browse all 470 CVE security advisories affecting HackerOne. AI-powered Chinese analysis, POCs, and references for each vulnerability.
HackerOne operates a crowdsourced vulnerability disclosure platform, connecting organizations with ethical hackers to identify and remediate security flaws before malicious exploitation. The platform’s extensive record of 470 CVEs highlights a diverse attack surface, with historically common vulnerability classes including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation. These defects often stem from complex API integrations and web application logic errors inherent in its SaaS infrastructure. Notable security characteristics involve its reliance on third-party researchers, which introduces both robust coverage and potential insider threat vectors. While major public incidents have been relatively contained, the platform’s role as a central hub for vulnerability data makes it a high-value target for attackers seeking to disrupt the disclosure ecosystem or harvest sensitive intelligence. Maintaining strict access controls and transparent reporting mechanisms remains critical for preserving trust and ensuring the integrity of the bug bounty process across its global user base.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2016-10602 | haxe 安全漏洞 — haxe node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10603 | air-sdk 安全漏洞 — air-sdk node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10604 | dalek-browser-chrome 安全漏洞 — dalek-browser-chrome node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10605 | dalek-browser-ie 安全漏洞 — dalek-browser-ie node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10606 | grunt-webdriver-qunit 安全漏洞 — grunt-webdriver-qunit node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10607 | openframe-glsviewer 安全漏洞 — openframe-glslviewer node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10608 | robot-js 安全漏洞 — robot-js node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10609 | chromedriver126 安全漏洞 — chromedriver126 node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10610 | unicode-json 安全漏洞 — unicode-json node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10612 | dalek-browser-ie-canary 安全漏洞 — dalek-browser-ie-canary node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10613 | bionode-sra 安全漏洞 — bionode-sra node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10614 | httpsync 安全漏洞 — httpsync node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10615 | curses 安全漏洞 — curses node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10616 | openframe-image 安全漏洞 — openframe-image node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10617 | box2d-native 安全漏洞 — box2d-native node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10618 | node-browser 安全漏洞 — node-browser node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10619 | pennyworth 安全漏洞 — pennyworth node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10620 | atom-node-module-installer 安全漏洞 — atom-node-module-installer node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10621 | fibjs 安全漏洞 — fibjs node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10622 | nodeschnaps 安全漏洞 — nodeschnaps node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10623 | macaca-chromedriver-zxa 安全漏洞 — macaca-chromedriver-zxa node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10624 | selenium-chromedriver 安全漏洞 — selenium-chromedriver node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10625 | headless-browser-lite 安全漏洞 — headless-browser-lite node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10626 | mystem3 安全漏洞 — mystem3 node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10628 | selenium-wrapper 安全漏洞 — selenium-wrapper node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10629 | nw-with-arm 安全漏洞 — nw-with-arm node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10630 | install-g-tes 安全漏洞 — install-g-test node module CWE-311 | 5.9 | - | 2018-06-01 |
| CVE-2016-10631 | jvminstall安全漏洞 — jvminstall node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10632 | apk-parser2 安全漏洞 — apk-parser2 node module CWE-311 | 8.1 | - | 2018-06-01 |
| CVE-2016-10633 | dwebp-bin 安全漏洞 — dwebp-bin node module CWE-311 | 8.1 | - | 2018-06-01 |
This page lists every published CVE security advisory associated with HackerOne. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.