[MAJOR BUG] Store Settings email address not validated!

For Articles relating to more than one ISC version
Post Reply
Martin
Site Admin
Site Admin
Posts: 1854
Joined: Wed Jun 17, 2009 6:30 pm
Location: South Yorkshire UK
Contact:

[MAJOR BUG] Store Settings email address not validated!

Post by Martin »

Following a hunch brought about by this thread:
http://www.interspire.com/forum/showthr ... #post54209
... I checked to see if the Store Settings page will accept an invalid email address in any of the email fields under Email settings.

To my horror I could put anything in there including a completely invalid string of random characters and it accepted them!

It seems that nobody has included basic sanity checking on these fields and it's entirely possible that other fields are also left wide open...

I would bug fix this but doubtless Interspire will fix this quickly so I'll just raise it with them directly...

Pretty big flipping thing to forget though... :shock: :?
Post Reply