com_api-plugins icon indicating copy to clipboard operation
com_api-plugins copied to clipboard

Security issue on plugin users

Open robertaonnis opened this issue 3 years ago • 0 comments

On api request if you are logged in / or you pass a token of not admin user, the user can add an id of user and get the data information. If user is not super user or admin should not be possible to search other user id

robertaonnis avatar Aug 26 '22 18:08 robertaonnis