opencaching / opencaching-pl

The source code of Opencaching.PL (and some other domains)
https://opencaching.pl/
GNU General Public License v3.0
22 stars 33 forks source link

Potencial security vulnerability with cache verification. #2397

Open Fili-pk opened 10 months ago

Fili-pk commented 10 months ago

You can set verified status just by enabling status form using html inspector tool, while editing unverified cache. Expected behavior: No permission error from the backend.