Site icon API Security Blog

OAuth Single Sign On – SSO (OAuth Client) < 6.23.4 – Improper Authentication

The plugin does not have authorisation in various AJAX actions, which could allow users with a role as low as Subscriber to call them and perform unauthorised actionsRead More

Exit mobile version