If your query string includes delicate details which include session identifiers, then attackers can use this data to launch additional attacks. as the access token in despatched in GET requests, this vulnerability https://henriddkb634370.blogspothub.com/29211170/the-definitive-guide-to-mysql-database-health-check-consultant