Tom Wolters
tomsec.bsky.social
Tom Wolters
@tomsec.bsky.social
AKASEC, Making the Dutch IT more secure, Cybersecurity, DIVD, Research, CTI, Go, Python
Recently I found vulnerabilities in Request Tracker. It was possible to obtain sensitive information without authentication using the default install.

With Digital Trust Center and NCSC-NL we reported this to the vendor. They released a new version shortly after. Using Request Tracker? Update now!
October 23, 2023 at 8:40 AM