Site icon API Security Blog

Remote Code Execution (RCE)

aim is vulnerable to Remote Code Execution (RCE). The vulnerability is due to improper user access restriction to the RunView object, allowing for the execution of arbitrary code via a crafted query parameter to the /api/runs/search/run/…Read More

Exit mobile version