Changes between Initial Version and Version 1 of Ticket #1665, comment 5


Ignore:
Timestamp:
2012-01-25T05:17:52Z (12 years ago)
Author:
nejucomo
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #1665, comment 5

    initial v1  
    11'''Network vulnerability to users''': Leaked introducer furl.
    22
    3 Any user of the webapi can learn the introducer furl, which in some use cases is undesirable. 
     3Any user of the webapi can learn the introducer furl, which in some use cases is undesirable.
     4
     5'''Workaround''' (low confidence): Blocking requests to the webapi {{{/}}} url prevents the user from learning the introducer furl.  ''Warning'': This may not be sufficient; I recommend waiting for more community confidence in this workaround before relying on it.