Bottelet / DaybydayCRM

DaybydayCRM an open-source CRM, to help you keep track of your daily workflow.
https://daybydaycrm.com
2.24k stars 752 forks source link

🚨 Potential Security Vulnerability - huntr.dev #250

Closed huntr-helper closed 3 years ago

huntr-helper commented 3 years ago

⚠️ Potential Vulnerability in DaybydayCRM

👋 Hello, @Bottelet - @ranjit-git has disclosed a potential vulnerability in your repository. To validate or invalidate this potential vulnerability, please visit https://huntr.dev/bounties/4-other-DaybydayCRM and join our community in helping secure open-source code.


☎️ Need further support?

Come and join us on our Discord and a member of our team will be happy to help! 🤗

cc - @JamieSlome

Bottelet commented 3 years ago

Hi, I'm gonna need some more information.

Cheers

JamieSlome commented 3 years ago

@Bottelet - have you visited the platform URL mentioned in the comment above?

Bottelet commented 3 years ago

I have @JamieSlome, and I'm not interested in signing up to see a bug, That should be reported through GH issues.

ranjit-git commented 3 years ago

Hi, @Bottelet It is safer to use https://huntr.dev for bug details . Because in github issue vulnerability details wil be public for all . And its not good idea to make active security bug details public

ranjit-git commented 3 years ago

Hi @huntr-helper @JamieSlome @Bottelet it seems this bug is fixed here https://github.com/Bottelet/DaybydayCRM/commit/a5719a23bdc2e29e021e86b97a1116ed1fd683c2 can you plz check/update the ticket ?