Bug #2391
closed
Frontend forms need tokens and tokens protection checks
Added by beat over 13 years ago.
Updated over 13 years ago.
Description
All frontend forms are missing token protections with cbGetSpoofInputTag, and save functions evaluating posts need to check them to protect against CSRF attacks with cbSpoofCheck.
- Subject changed from Backend forms need token protection checks to Frontend forms need tokens and tokens protection checks
- Status changed from New to Resolved
- Assignee changed from krileon to beat
- % Done changed from 0 to 100
- Status changed from Resolved to Closed
Also available in: Atom
PDF