An authorization flaw in an order-tracking plugin exposed the order information of nearly 39,798 SafePal customers. The exposed records included names, emails, shipping addresses, phone numbers, and purchase details. SafePal has fixed the issue, removed phishing websites, and reduced data retention to 90 days. Customers are advised to be cautious of phishing attempts.

Leave a Reply