Vatican’s Click to Pray App Exposes 700,000 Users Through Unauthenticated API Flaw

The Vatican’s official Click to Pray app has exposed the personal information of more than 700,000 users through an unauthenticated API flaw. The issue allowed anyone with a web browser to retrieve account data without needing to sign in. Click to Pray offers daily prayers and papal content through its website and mobile applications. Users […]

This article has been indexed from Cyber Security News

Read the original article: