3 Jun
2005
3 Jun
'05
12:48 p.m.
On 03 Jun 2005, at 11:23, Gerhard Killesreiter wrote:
What follows is a proposal I sent to Dries before the security releases were made. Since it hinted at the possibility of flaws in our current way of handling forms I didn't want to make it available for public viewing at that time. There are probably still errors in some forms, but the most serious exploits should be fixed now. Although the proposal is geared towards node forms, it could be easily extended for other forms.
I think I'm missing the point. What _exactly_ do we gain? -- Dries Buytaert :: http://www.buytaert.net/