Yarn transfers npm credentials over unencrypted http connection
https://hackerone.com/reports/640904
8.2
chalker
null
Cloudflare does not sufficiently truncate credit card numbers in invoices
https://hackerone.com/reports/293276
null
webster
null
ChaCha20-Poly1305 with long nonces
https://hackerone.com/reports/506040
7.4
jorandirkgreef
$500