mirfani340 / climate-aware.id

Repository for kopet team
https://climate-aware-id.vercel.app
MIT License
0 stars 1 forks source link

Gnews API Leaks #10

Closed mirfani340 closed 9 months ago

mirfani340 commented 10 months ago

I have found the security issues that occour on project sir, here are the provided issues: image

Curl Requests to prove the issues: image

@dimyatimaulana @Mr-buddyy

dimyatimaulana commented 10 months ago

What causes this issue?

dimyatimaulana commented 10 months ago

You already put the endpoint and key in environment variable right?

mirfani340 commented 10 months ago

You already put the endpoint and key in environment variable right?

Yes, i'm still investigate it also, i believe its the API algorithm in code it self