Privacy Bug With Frontforum
This bug is fixed !

Description

If you can read what follows (i.e. between the 2 lines), there is a privacy bug with module FrontForum which displays threads from my private wiki.


The requested category belongs to a private site.

How to Reproduce

[[module FrontForum category="1835" limit="3"]]
%%title%%
[[size smaller]]%%date|%O ago (%e %b %Y, %H:%M %Z)%%[[/size]]
[[/module]]

Browsers

Not browser dependent.

Has bug

Works correctly

Workarounds

Contact

Rate this Bug

Rate the urgency of this bug. If you think it is more urgent and important than it's current rating suggests, rate it up.

rating: +3+x

Comments

Fixed
michal frackowiakmichal frackowiak 1210616523|%e %b %Y, %H:%M %Z|agohover

Fixed!


Michał Frąckowiak @ Wikidot Inc.
Visit my blog at michalfrackowiak.com

unfold Fixed by michal frackowiakmichal frackowiak, 1210616523|%e %b %Y, %H:%M %Z|agohover
Re: Fixed
ErichSteinboeckErichSteinboeck 1210621139|%e %b %Y, %H:%M %Z|agohover

Michal, Helmut reported some time ago that the same security issue exists for images from private sites.

See Helmut's post, 2 Jul 2007, 14:39

unfold Re: Fixed by ErichSteinboeckErichSteinboeck, 1210621139|%e %b %Y, %H:%M %Z|agohover
Re: Fixed
Phil ChettPhil Chett 1210676043|%e %b %Y, %H:%M %Z|agohover

picture bug is now on bug list.

unfold Re: Fixed by Phil ChettPhil Chett, 1210676043|%e %b %Y, %H:%M %Z|agohover

Add your comment

Add a new comment
page tags: fixed frontforum privacy
page_revision: 4, last_edited: 1210747039|%e %b %Y, %H:%M %Z (%O ago)
Unless stated otherwise Content of this page is licensed under Creative Commons Attribution-Share Alike 2.5 License.