IDOR allowing to read another user's token on the Social Media Ads service
High
S
Semrush
Submitted None
Team Summary
Official summary from Semrush
The hotfix was released asap. The investigation showed that there were no cases of vulnerability exploitation.
Actions:
Reported by
a_d_a_m
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Improper Access Control - Generic