Closed bstats closed 11 years ago
Name Sync used to display only the first name/sub/email in the API response for a post. Now it only displays the last name/sub/email.
This allows malicious users to change the name/sub/email of any post simply by sending another request to sp.php.
Possible solutions:
p
Should be fixed.
Name Sync used to display only the first name/sub/email in the API response for a post. Now it only displays the last name/sub/email.
This allows malicious users to change the name/sub/email of any post simply by sending another request to sp.php.
Possible solutions:
p
column unique)