FlyerTalk Forums - View Single Post - Serious security issue on ba.com - showing bookings for previously logged in user
Old Dec 9, 2018 | 4:38 am
  #4  
ringingup
50 Countries Visited
All eyes on you!
10 Years on Site
 
Join Date: Feb 2013
Location: London, UK
Programs: Virtuoso, Hyatt Prive, Marriott STARS/Luminous, Hilton for Luxury, Hera, Rosewood Elite and others
Posts: 4,143
Regardless of what the root cause is (I didn’t have enough time to investigate), no one should see someone else’s bookings and booking references when logging in. It is clearly an application issue, as in not a browser issue.
ringingup is offline