Over 50,000 Azure AD Users’ Access Tokens Exposed via Unauthenticated API Endpoint

Over 50,000 Azure AD Users’ Access Tokens Exposed via Unauthenticated API Endpoint










CloudSEK’s BeVigil platform has uncovered a critical security vulnerability affecting an aviation giant, where an exposed JavaScript file containing an unauthenticated API endpoint led…










Go to gbhackers.com





Posted

in

by

Tags: