[buddypress-trac] [BuddyPress] #2329: Security problem: Join private/hidden groups by manipulating the URL with nonce

buddypress-trac at lists.automattic.com buddypress-trac at lists.automattic.com
Fri Apr 23 17:02:58 UTC 2010


#2329: Security problem: Join private/hidden groups by manipulating the URL with
nonce
----------------------+-----------------------------------------------------
 Reporter:  gottowik  |       Owner:                         
     Type:  defect    |      Status:  new                    
 Priority:  critical  |   Milestone:  1.2.4                  
Component:  Core      |    Keywords:  has-patch needs-testing
----------------------+-----------------------------------------------------
Changes (by boonebgorges):

 * cc: boonebgorges@… (added)


-- 
Ticket URL: <http://trac.buddypress.org/ticket/2329#comment:6>
BuddyPress <http://buddypress.org/>
BuddyPress


More information about the buddypress-trac mailing list