[Trac-tickets] [The Trac Project] #3031: *Your email or username*
field should be static if a user is logged in
The Trac Project
noreply at edgewall.com
Wed Apr 12 20:44:38 CDT 2006
#3031: *Your email or username* field should be static if a user is logged in
---------------------------+------------------------------------------------
Reporter: anonymous | Owner: jonas
Type: defect | Status: new
Priority: normal | Milestone: 0.9.5
Component: ticket system | Version: 0.9.4
Severity: normal | Keywords:
---------------------------+------------------------------------------------
If a user is logged into Trac and either creates or modifies a ticket
he/she can falsely claim to be someone else by entering false information
in the "Your email or username" field. Also, in the timeline it will use
the information from this field rather than the user who is logged in.
The current behavior is fine for guest or anonymous users but for cases
where someone is logged in the edit field should be replaced with static
text.
--
Ticket URL: <http://projects.edgewall.com/trac/ticket/3031>
The Trac Project <http://trac.edgewall.com/>
More information about the Trac-Tickets
mailing list