Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

All sites were vulnerable to authenticating as other users or tampering with ciphertexts. Error reporting enables the RCE. However, I still hope that nobody is vulnerable or panicking since this was reported and fixed last year.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: