Ingredients for all recipes of the world—but no cooking instructions (Lightningtalk)

by Daniel Böhmer (Leipzig.pm)

Ingredients for all recipes of the world—but no cooking instructions aimed at Any and is held in English.

During unit testing I found a security vulnerability in my project Coocook.org. It allowed retrieving and manipulating the ingredients list of any recipe on Coocook without authentication/authorization. An attacker wouldn’t get the name of recipes or cooking instructions, though. This is a personal war story I experienced in February.


Interest in attending: