diff --git a/webgoat-lessons/idor/src/main/java/org/owasp/webgoat/idor/IDORViewOwnProfile.java b/webgoat-lessons/idor/src/main/java/org/owasp/webgoat/idor/IDORViewOwnProfile.java index 415c9c9fe..1db35b954 100644 --- a/webgoat-lessons/idor/src/main/java/org/owasp/webgoat/idor/IDORViewOwnProfile.java +++ b/webgoat-lessons/idor/src/main/java/org/owasp/webgoat/idor/IDORViewOwnProfile.java @@ -36,7 +36,7 @@ public class IDORViewOwnProfile { @Autowired UserSessionData userSessionData; - @GetMapping(path = "IDOR/own", produces = {"application/json"}) + @GetMapping(path = {"IDOR/own", "IDOR/profile"}, produces = {"application/json"}) @ResponseBody public Map invoke() { Map details = new HashMap<>();