Page 207 of 211,259, showing 20 records out of 4,225,172 total, starting on record 4,121, ending on 4,140
# | Username | Text | |
---|---|---|---|
# | Aug 7th 2008, 22:18 | markstory | paginator remembers sort and such. |
# | Aug 7th 2008, 22:19 | cobol | yeah. question is if it will remember it if I had get parameters up in the url |
# | Aug 7th 2008, 22:19 | cobol | well, we'll see |
# | Aug 7th 2008, 22:26 | Jonah | why is validates() not validating fields that are not passed to it? this is a security hole |
# | Aug 7th 2008, 22:26 | Jonah | it should not return true if not all the required fields are passed to it |
# | Aug 7th 2008, 22:28 | Jonah | uhh... |
# | Aug 7th 2008, 22:28 | Jonah | this means that you have to manually check that all the fields were passed? |
# | Aug 7th 2008, 22:29 | Jonah | am i missing something? |
# | Aug 7th 2008, 22:33 | Jonah | because of this I found a way to hack my own site and create users with a blank username |
# | Aug 7th 2008, 22:33 | markstory | are you validating username? |
# | Aug 7th 2008, 22:34 | markstory | to make sure there is something there? |
# | Aug 7th 2008, 22:34 | ronparker | is Cakephp based on Pear or any other framework? |
# | Aug 7th 2008, 22:34 | markstory | ronparker: nope, just cake based. |
# | Aug 7th 2008, 22:34 | markstory | however it can be used with components from zend framework or pear if you wish. |
# | Aug 7th 2008, 22:37 | Jonah | markstory: it is leaving everything blank... now it looks like a bug in php ill get back to you... |
# | Aug 7th 2008, 22:38 | ronparker | what about license, may i use cakephp and sell making profit of it? |
# | Aug 7th 2008, 22:38 | lqdice__ | markstory: i figured out my problem.. Security expects hidden fields to have the same value |
# | Aug 7th 2008, 22:38 | lqdice__ | so it black lists it when swfupload changes it |
# | Aug 7th 2008, 22:38 | anthony | ronparker: it's under the MIT license |
# | Aug 7th 2008, 22:38 | markstory | lqdice__: it certainly does. |