How a GraphQL Invitation Flow Exposed Users at Scale (opens in new tab)
A normal invite feature revealed registered accounts, internal GraphQL identifiers, and user metadata through an overly detailed API…
Read the original articleA normal invite feature revealed registered accounts, internal GraphQL identifiers, and user metadata through an overly detailed API…
Read the original article