Skip to content

Conversation

froz42
Copy link

@froz42 froz42 commented Aug 9, 2025

Anyone can spoof server status reporting without a proper secret. This merge request is incomplete for the UI and install script but fix this.

if someone make the implementation of the script.sh it should not leak the credential or at least be protected by a token in the uri

@froz42 froz42 force-pushed the master branch 2 times, most recently from 9652638 to 693b6ea Compare August 9, 2025 10:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant