6. of Inference
You use identifiers in our web links. These identifiers are leaked in browsers’ referrer headers and get logged by redirectors and URL shorteners.
Threat |
|
Your Java web application uses a JSESSIONID that it includes in the URL. Before redirecting to other sites, be careful what you include in the URL. Most modern browsers will only send the origin to other sites. |
|
GDPR |
Chapter 1, Art. 4 – 12. Chapter 2, Art. 5 – 1. (f) Chapter 2, Art. 5 – 2. |
CCPA & CPRA |
CCPA 1798.100. General Duties of Businesses that Collect Personal Information (e) |
OECD |
N/A |
Mitigations |
|
... |