Bug Bounties

FileZilla

Powered by: 

Allows bounty splitting: 

Average time to first program response: 13

Average time to bounty awarded null: 

Average time to report resolved: 

Handle filezilla

Managed program: false

Name: FileZilla

Offers bounties: true

Offers swag: false

Response efficiency percentage: 100

Submission state: open

Url: https://hackerone.com/filezilla

Website: https://filezilla-project.org/

In scope:

  • Asset identifier: https://svn.filezilla-project.org/svn/FileZilla3/trunk/
  • Asset type: SOURCE_CODE
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: 
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: https://svn.filezilla-project.org/svn/FileZilla3/trunk/src/putty
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: The code in this directory is based on PuTTY. Only vulnerabilities specific to changes made in FileZilla compared to upstream are eligible for a bounty.
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://svn.filezilla-project.org/svn/libfilezilla/trunk
  • Asset type: SOURCE_CODE
  • Availability requirement: 
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: 
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: https://svn.filezilla-project.org/svn/libfilezilla/trunk/
  • Asset type: SOURCE_CODE
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: 
  • Integrity requirements: 
  • Max severity: critical