SKLINET / strapi-plugin-tinymce

11 stars 18 forks source link

Unauthenticated API Key Disclosure #33

Closed Ali-Dalal closed 11 months ago

Ali-Dalal commented 1 year ago

Hello,

Settings API is publicly available example: GET: /tinymce/settings

is there a way to limit the access to this endpoint to only allow authenticated users?

stale[bot] commented 11 months ago

This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.