jiveshkalra / SecureHack-Quest-TechBuzz

1 stars 16 forks source link

[Vulnerability] Sensitive info exposed in 'localStorage' #189

Open Hardik-Sharma-121123 opened 3 months ago

Hardik-Sharma-121123 commented 3 months ago

Description of the Vulnerability

It will be highly insecure to store sensitive info like password or user_uuid in 'localStorage'. This can be easily accessed through JavaScript.

Screen Shot of the Vulnerable Code

image

Impact of the vulnerability

4/5 [user info is compromised]

Recommended Steps to resolve it?

May use different and http cookies to store data

School Name

DAV PRATAP VIHAR