Site icon API Security Blog

Improper Access Control

github.com/awake1t/linglong is vulnerable to access control bypass. The vulnerability exists in the `jwt.go` due to the hard coded jwt token which allows an attacker to craft a malicious cookie and gain access to the system.Read More

Exit mobile version