Fides is an open-source privacy engineering platform. Prior to version 2.69.1, the Fides Webserver API's built-in IP-based rate limiting is ineffective in environments with CDNs, proxies or load ...
Continue ReadingSeptember 10, 2025
An in-depth analysis of common JSON Web Token (JWT) mistakes, basic auth, long-lived tokens, and quick, high-impact fixes to secure your APIs . Introduction APIs are the backbone of modern digital ser ...
Continue ReadingSeptember 10, 2025
A vulnerability has been found in Freshwork up to 1.2.3. This impacts an unknown function of the file /api/v2/logout. Such manipulation of the argument post_logout_redirect_uri leads to open redirect. ...
Continue ReadingSeptember 10, 2025
A vulnerability has been found in Freshwork up to 1.2.3. This impacts an unknown function of the file /api/v2/logout. Such manipulation of the argument post_logout_redirect_uri leads to open redirect. ...
Continue ReadingSeptember 10, 2025
Fides is an open-source privacy engineering platform. Prior to version 2.69.1, the Fides Admin UI login endpoint relies on a general IP-based rate limit for all API traffic and lacks specific anti-aut ...
Continue ReadingSeptember 10, 2025
Fides is an open-source privacy engineering platform. Prior to version 2.69.1, the OAuth client creation and update endpoints of the Fides Webserver API do not properly authorize scope assignment. Thi ...
Continue ReadingSeptember 10, 2025
creation_timestamp| type| source ---|---|--- 2025-09-10 20:41:46+00:00| seen|...Read More ...
Continue ReadingSeptember 10, 2025
creation_timestamp| type| source ---|---|--- 2025-09-10 21:49:37+00:00| seen|...Read More ...
Continue ReadingSeptember 10, 2025
Back to Main