The vulnerability allowed unauthorized disclosure of private email addresses of WakaTime users through the private leaderboards feature. The email addresses were exposed to leaderboard creators and me ...
Continue ReadingSeptember 14, 2025
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
The WakaTime OAuth authorization flow was vulnerable to a double-clickjacking attack. The attack allowed an attacker to trick users into unknowingly clicking the "Connect my WakaTime account& ...
Continue ReadingSeptember 14, 2025
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
The denial of service vulnerability was identified in the system. The vulnerability could have allowed an attacker to disrupt the availability of the system by exhausting its...Read More ...
Continue ReadingSeptember 14, 2025
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
Back to Main