Page MenuHomePhabricator

Add cross-site request forgery protection
Closed, DeclinedPublic

Description

Add CSRF protection so external sites can not misuse your cookie to submit malicious comments.

See https://www.mediawiki.org/wiki/Cross-site_request_forgery


Version: unspecified
Severity: normal

Details

Reference
bz51723

Event Timeline

bzimport raised the priority of this task from to Low.Nov 22 2014, 1:52 AM
bzimport set Reference to bz51723.
Aklapper added subscribers: Rjain, Aklapper.

@Rjain: I am resetting the assignee of this task because there has not been progress lately (please correct me if I am wrong!).
Resetting the assignee avoids the impression that somebody is already working on this task. It also allows others to potentially work towards fixing this task.
Please claim this task again when you plan to work on it (via Add Action...Assign / Claim in the dropdown menu) - it would be welcome! Thanks for your understanding!

MarcoAurelio subscribed.

Declining per T189753: Archive the Annotator extension. The extension is no longer maintained and has been archived.