Open Hardik-Sharma-121123 opened 3 months ago
The fetch request sends email and password as query parameters, which can be logged in server logs and browser history . That can expose sensitive information.
3/5
can use a POST request with credentials
DAV PRATAP VIHAR
Description of the Vulnerability
The fetch request sends email and password as query parameters, which can be logged in server logs and browser history . That can expose sensitive information.
Screen Shot of the Vulnerable Code
Impact of the vulnerability
3/5
Recommended Steps to resolve it?
can use a POST request with credentials
School Name
DAV PRATAP VIHAR