Description: A vulnerability has been discovered in the POST /v3/membership/check_v_pin_new HTTP/1.1 request to the Host: api.go.co, which can potentially leak sensitive information, including the email address associated with the user_id. By changing the “user_id” parameter in the request from a legitimate value to “1”, it is possible to leak sensitive information. …