Skip to content

Conversation

@pensarapp
Copy link

@pensarapp pensarapp bot commented Nov 5, 2025

Type Identifier Message Severity Link
Application
CWE-285
The GET endpoint is missing critical authorization checks, which poses a risk of unauthorized access to sensitive product data. This inconsistency with other protected endpoints can lead to a potential security breach if exploited. Adequate access control measures must be consistently implemented to safeguard against such vulnerabilities.
medium
 Link 

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant