Site icon API Security Blog

Insufficient Authorization

github.com/mattermost/mattermost/ is vulnerable to Insufficient Authorization. The vulnerability is caused due to insufficient scoping of WebSocket responses to authorised users, resulting in Websocket responses being broadcasted to everyone in theā€¦Read More

Exit mobile version