@ashoKumar89 People saying IDOR, maybe, but not enough context. `getUser` could be a public profile lookup, in which case it's fine. The reliable issue is dumping the whole user object straight to JSON. That's how password hashes, emails, tokens etc. leak if it's a `SELECT *`.
@elonmusk People will hoard this wealth, it wont be for all. Currently some people have more than they need, while some are dying of hunger - why would that change?
@Spotify I've encountered a very severe bug! Seems like some StarWars Easter Egg is applied when playing an E.T. song... I don't remember seeing the movie "E.T. vs Luke" or anything similar?
See: https://t.co/svNgbK945M