Looking for the vulnerability index of Invicti's legacy products?
API Sensitive Info(PII) accessible without authentication - Vulnerability Database

API Sensitive Info(PII) accessible without authentication

Description

The API exposes sensitive information (Personally Identifiable Information (PII)) due to a vulnerability in the authorization process. An unauthenticated attacker can gain access to the personal data.

Remediation

Implement a robust authorization mechanism