Loading HuntDB...

Disclosure of Users Information On Wordpress Api [https://jitsi.org/]

Low
8
8x8
Submitted None

Team Summary

Official summary from 8x8

Jitsi was running a default WordPress site that had not yet been hardened to prevent user enumeration via the API.

Reported by 0xelkomy

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Improper Access Control - Generic