CVE-2026-25197
A specific endpoint allows authenticated users to pivot to other user profiles by modifying the id number in the API call.
Zwakheid
A specific endpoint allows authenticated users to pivot to other user profiles by modifying the id number in the API call.
Getroffen producten
- mygardyn cloud_api
Bronnen
Vind de bug voordat een aanvaller dat doet.
Log in met GitHub en start je eerste audit binnen een minuut. Voor het gratis abonnement is geen creditcard nodig.