Project

General

Profile

Actions

Bug #6239

closed

Saving group logo overrides category logo

Added by krileon about 8 years ago. Updated almost 8 years ago.

Status:
Closed
Priority:
Immediate
Assignee:
Target version:
Start date:
10 October 2016
Due date:
% Done:

100%

Estimated time:

Description

The category save is being triggered during group save and category save is picking up on the $_FILES. Secure this further like CB Gallery has done.

https://www.joomlapolis.com/forum/single-add-on-support/234958-groupjive-member-can-change-the-image-and-avatar-from-category#286723

Actions #1

Updated by krileon about 8 years ago

This is due to GJ Forums generating the categories kunena forum category then storing its id to the GJ category params. This is being done at the same time as a group is being created so both are parsing the POST canvas/logo inputs. Securing like CB Gallery does completely solves this.

Actions #2

Updated by krileon about 8 years ago

  • Status changed from Assigned to Resolved
  • % Done changed from 0 to 100
Actions #3

Updated by krileon almost 8 years ago

  • Status changed from Resolved to Closed
Actions

Also available in: Atom PDF