#5534 - No server-side field validation for field hooks (catalogues)

  • By
  • Added
  • 6 views
Identifier #5534
Issue type Major issue (breaks an entire feature)
Title No server-side field validation for field hooks (catalogues)
Status Completed
Handling member PDStig
Version 10.0.44
Addon catalogues
Description There is no server-side validation when adding or editing catalogue entries. The only validation is JavaScript-side. But someone can modify or bypass the JS in their browser to force validation to pass, thereby resulting in the form getting submitted and the catalogue entry having invalid values.

This bug also exists in v11.
Steps to reproduce

Funded? No
Commits

Fixed MANTIS-5534 (No server-side field validation for field hooks (catalogues)) (7a460e1e) · Commits · Composr ecosystem / Composr · GitLab

The system will post a comment when this issue is modified (e.g., status changes). To be notified of this, click "Enable comment notifications".

Rating

Unrated