Closed (fixed)
Project:
Node Limit Number
Version:
5.x-1.x-dev
Component:
Code
Priority:
Critical
Category:
Bug report
Assigned:
Reporter:
Created:
25 Apr 2008 at 10:39 UTC
Updated:
9 May 2008 at 10:44 UTC
The limit is only checked on showing the user the node form. What if a malitious user generates the appropiate $_POST object? What if we have a user clicking on back button combined with a messy browser cache?
I just committed a modification that attempts to manage this possibility. It's in the dev release or any release higher than 5x-1.1.1
Comments
Comment #1
Anonymous (not verified) commentedAutomatically closed -- issue fixed for two weeks with no activity.