Skip to content

add server-side validation to ensure that the submitted parent_id value is valid for the user comment page. #65

@muhammadshoaib0k0

Description

@muhammadshoaib0k0

The hidden_field method is vulnerable to manipulation by a technical person with access to the browser console, which could allow them to modify the parent_id value.

Metadata

Metadata

Labels

bugSomething isn't working

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions