Disclosure of Users Information On Wordpress Api [https://jitsi.org/]
Low
8
8x8
Submitted None
Team Summary
Official summary from 8x8
Jitsi was running a default WordPress site that had not yet been hardened to prevent user enumeration via the API.
Actions:
Reported by
0xelkomy
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Improper Access Control - Generic