| Summary | The python_food ordering system V1.0 has an unauthorized vulnerability that leads to the leakage of sensitive user information. Attackers can access it through https://ip:port/api/myapp/index/user/info?id=1 And modify the ID value to obtain sensitive user information beyond authorization. |
|---|---|
| Publication Date | Nov. 16, 2024, 1:15 a.m. |
| Registration Date | Nov. 16, 2024, 5 a.m. |
| Last Update | Nov. 19, 2024, 2:11 a.m. |