Page MenuHomePhabricator

Ensure CSRF tokens are used upon various form submissions
Open, LowPublicBUG REPORT

Description

*http://web.archive.org/web/20110600000000/http://code.pediapress.com/wiki/ticket/629

  • Protect all requests that modify the session against CSRF
  • new – jojo – normal – major – 2 years
  • Nothing in bugzilla (unless it's in Security)
  • anomie> Nemo_bis: Presumably adding CSRF tokens to various form submissions.

I doubt it was ever looked into.


Version: unspecified
Severity: normal

Details

Reference
bz71848

Event Timeline

bzimport raised the priority of this task from to Needs Triage.Nov 22 2014, 3:57 AM
bzimport added a project: Collection.
bzimport set Reference to bz71848.
bzimport added a subscriber: Unknown Object (MLST).
Restricted Application added subscribers: StudiesWorld, Aklapper. · View Herald Transcript
Aklapper triaged this task as Low priority.Feb 4 2022, 8:07 PM
Aklapper changed the subtype of this task from "Task" to "Bug Report".