The inline commenting bypasses Mollom for comments flagged as unsure.

Steps to reproduce

  1. Installed Drupal 7.22
  2. Enable comments if not enabled in a minimum install
  3. Set authorized users to have the following permissions - View comments, Post comments, Skip comment approval
  4. Installed Ideal Comments 7.x-1.1
  5. Installed Mollom 7.x-2.6
  6. Set Mollom to test mode
  7. Add a comment form to Mollom for a selected content type
  8. Go to the content type where you added Mollom comment form and add some content
  9. Add a comment to a added content as 'ham'
  10. Try replying to the ham content as 'spam' or 'unsure'
  11. Mollom security filtering will be bypassed and the spam will be added straight away

Note: I would not recommend this module for large production sites. I am debugging a site which has nearly 2.4GB of spam comments that has been added because of this bug. Therefore flagged this issue as Critical. Please update your module page to reflect this issue so you can prevent people not using the module with a similar setup as described above.

CommentFileSizeAuthor
Screen Shot 2013-06-02 at 09.15.34.png38.05 KBsankatha
Support from Acquia helps fund testing for Drupal Acquia logo

Comments

drupalerocant’s picture

I had the same problem, the only way to solve the big amount of spam was disablig ideal comments module.
A pity, as it is very useful.
I'll follow the issue jus in case someone can solve it.

drupalerocant’s picture

anyway I would say this is a duplicate of #1722414: About mollom