jiveshkalra / SecureHack-Quest-TechBuzz

1 stars 16 forks source link

[Vulnerability] Insecure fetch request #187

Open Hardik-Sharma-121123 opened 3 months ago

Hardik-Sharma-121123 commented 3 months ago

Description of the Vulnerability

The fetch request sends email and password as query parameters, which can be logged in server logs and browser history . That can expose sensitive information.

Screen Shot of the Vulnerable Code

image

Impact of the vulnerability

3/5

Recommended Steps to resolve it?

can use a POST request with credentials

School Name

DAV PRATAP VIHAR