SEGUC17 / Foobar

1 stars 0 forks source link

All info about admins shown #53

Open minaamir26 opened 7 years ago

minaamir26 commented 7 years ago
  1. Severity: ( high)

  2. Reported: by Mina

  3. Description: On just going to the home page of the website without even logging in as a user or as n admin or as a service provider, All the data in the database about any admin who had sent an announcement are shown to me in the console !! including their passwords

  4. Steps to reproduce the issue:

  5. Expected result: The console should not contain these critical data

screenshot 12