Serious Security flaw in Seeking Alpha email message/ link

Avatar
  • updated
  • Under review

On a post by FD10000 on another website I clicked on a link to an article on Seeking Alpha. It looks like that link was emailed to FD100000 by Seeking Alpha.

The bug is that by clicking on that link, I am now logged in to FD10000's Seeking Alpha account. As you can see, I am posting with his account.

Please fix this.

FD10000, if you see this, please change the link on your CEF post in the income forum (don't want to mention exact location to minimize the number of people having access to your account) so no one else can log in. Note that I don't know your password. Clicking on the link let me into your Seeking Alpha account.

Avatar
anonymous
  • Under review

Thanks for this report. Can you please email me directly with the link you clicked? Please send to danielh@seekingalpha.com

Thanks,

Daniel Hochman

Director of Product, Seeking Alpha