Facebook Patches Bug that Exposed Private Information

The issue is that the endpoint that expects a GET request with a number of search parameters is now cross-site request forgery (CSRF) protected. This allow users to share the search results page via a URL, but most users won’t take action, which makes it a non-issue.

Read full news article on Infosec Island

 


Date:

Categorie(s):