The Latest in IT Security

Pinterest Fixes Validation Vulnerability in API

01
Jul
2015
Pinterest Fixes Validation Vulnerability in API

pinterest

Pinterest recently fixed an issue in the API of its web app that could have allowed remote attackers to compromise emails and carry out session hijacking and phishing attacks.
Vulnerability Lab researcher Benjamin Kunz Mejri discovered the issue, which is a persistent mail encoding and validation web vulnerability shortly after the start of the year. While developers with Pinterest were actually speedy in fixing the issue – they issued a patch in February, two weeks after Mejri notified them of the bug – the vulnerability wasn’t disclosed until Monday.

Read More

Leave a reply


Categories

FRIDAY, OCTOBER 20, 2017

Featured

Archives

Latest Comments

Social Networks