Trape Auth Bypass: Admin API Endpoints Missing Session Enforcement (IDOR/CWE-285)
Security Advisory
Critical
trape
Affected:
- trape (jofpin/trape) — /login and admin API endpoints
Referenced CVEs:
CVE-2026-85636 · 5.3
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.