Request

Resource:
GET http://localhost:8000/index.php?rest_route=%2Fwp%2Fv2%2Ftaxonomies&per_page=100&context=edit&_locale=user

User:
contributor

Source:
Intrusion request

Request Headers:
accept: application/json, */*;q=0.1
referer: http://localhost:8000/wp-admin/post.php?post=1&action=edit
x-wp-nonce: 17cbdf462b
user-agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/77.0.3844.0 Safari/537.36
sec-fetch-mode: cors
cookie: wordpress_test_cookie=WP+Cookie+check; wp-settings-time-2=1566224190; wordpress_logged_in_70490311fe7c84acda8886406a6d884b=contributor%7C1566396989%7CeUKn8Crd5bp2ZXFjbQosyojPnqBqGcb29FOSKjHIOxW%7C2186ee32857ba43c30c649f6734ea0804feb6582a11ff70b51f6bb1a101eea65; wordpress_70490311fe7c84acda8886406a6d884b=contributor%7C1566396989%7CeUKn8Crd5bp2ZXFjbQosyojPnqBqGcb29FOSKjHIOxW%7C09cf2528ab04aec8e5d0dfbef3d294e9108b718ab604f366c04fddcb4fb12929

Authorized?
No

Response Status
403

Response Headers:
date: Mon, 19 Aug 2019 14:16:31 GMT
server: Apache/2.4.38 (Debian)
x-powered-by: PHP/7.3.8
x-robots-tag: noindex
link: <http://localhost:8000/index.php?rest_route=/>; rel="https://api.w.org/"
x-content-type-options: nosniff
access-control-expose-headers: X-WP-Total, X-WP-TotalPages
access-control-allow-headers: Authorization, Content-Type
expires: Wed, 11 Jan 1984 05:00:00 GMT
cache-control: no-cache, must-revalidate, max-age=0
content-length: 94
connection: close
content-type: application/json; charset=UTF-8

Response Body: