Saturday, December 13, 2008

Bug in Google Friend Connect

Someone visited my resume on emurse few days ago. He found the the link , of my resume, from my Google profile through a Google Friend Connect application. As most of you may know that, when someone visits your resume emurse sends you a notification email with some information about the visitor like when, where, from (referal URL).

I was curious so I clicked on the referal URL and it redirected me to the place he found my resume link in. Which is my profile on the Google Friend Connect app, and here comes the bug that I was logged in automatically to his profile on Google Friend Connect and I had full privilages to accept/delete friends, edit his profile without having to authenticate.

The bug is now fixed, it didn't take them long to fix it after I reported it but it took me long to figure out how to reach the Friend Connect folks.

No comments: