Message1432

Author loewis
Recipients admin, forsberg, loewis, pefu512, stephen
Date 2009-06-24.19:08:44
SpamBayes Score 0.0027736
Marked as misclassified No
Content
Unfortunately, the ?:action style of changing issues is insecure, as it enables
XSS attacks. So recent versions of roundup have disabled this API to retiring,
and require regular POSTs.

Instead of retiring the issue, one should use the "Mark as SPAM" button, anyway
(available to administrators only).
History
Date User Action Args
2009-06-24 19:08:45loewissetrecipients: + loewis, admin, forsberg, pefu512, stephen
2009-06-24 19:08:44loewissetmessageid: <1245870524.94.0.144587128984.issue286@psf.upfronthosting.co.za>
2009-06-24 19:08:44loewislinkissue286 messages
2009-06-24 19:08:44loewiscreate