[buddypress-trac] [BuddyPress] #2343: SECURITY RISK (internal): Forum posts are "promiscuous" and can be hacked by unauthorized users

buddypress-trac at lists.automattic.com buddypress-trac at lists.automattic.com
Mon Apr 26 18:14:35 UTC 2010


#2343: SECURITY RISK (internal): Forum posts are "promiscuous" and can be hacked
by unauthorized users
----------------------+-----------------------------------------------------
 Reporter:  3sixty    |       Owner:       
     Type:  defect    |      Status:  new  
 Priority:  critical  |   Milestone:  1.2.4
Component:  Forums    |    Keywords:       
----------------------+-----------------------------------------------------

Comment(by r-a-y):

 Great find, 3sixty!

 Although it does require actually knowing the forum post's permalink,
 which in most cases will be hard to find if you're not a member of that
 group.

-- 
Ticket URL: <https://trac.buddypress.org/ticket/2343#comment:2>
BuddyPress <http://buddypress.org/>
BuddyPress


More information about the buddypress-trac mailing list