[buddypress-trac] [BuddyPress Trac] #9231: Using BP REST API it's possible to retrieve information about a spammed user

buddypress-trac noreply at wordpress.org
Thu Sep 5 13:18:00 UTC 2024


#9231: Using BP REST API it's possible to retrieve information about a spammed
user
--------------------------+--------------------------
 Reporter:  imath         |       Owner:  espellcaste
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  15.0.0
Component:  REST API      |     Version:
 Severity:  normal        |  Resolution:
 Keywords:  needs-patch   |
--------------------------+--------------------------

Comment (by emaralive):

 The user who is making the request is "bing" (user_id = 3) who happens to
 have a user role of "subscriber". So bing is requesting member information
 about the user with the id of 18 who happens to be a spammed user.

-- 
Ticket URL: <https://buddypress.trac.wordpress.org/ticket/9231#comment:5>
BuddyPress Trac <http://buddypress.org/>
BuddyPress Trac


More information about the buddypress-trac mailing list