Security issue with user name
-
Hello.
I am not quite sure but I think there is a security issue.
I’ve just noticed that the link of the Q&A author pass as get var the user value.
Second on the Q&A author page it is displayed not the display name, but the nickname or user login (still not sure).
Also some plugins, or often the users also, use their email as a user login or nickname, so I think it would be better to use only the display name.
Hope this can help.
Thanks
Viewing 10 replies - 1 through 10 (of 10 total)
Viewing 10 replies - 1 through 10 (of 10 total)
- The topic ‘Security issue with user name’ is closed to new replies.