[Trac-tickets] [The Trac Project] #3031: *Your email or username* field should be static if a user is logged in

The Trac Project noreply at edgewall.com
Wed Apr 12 20:44:38 CDT 2006


#3031: *Your email or username* field should be static if a user is logged in
---------------------------+------------------------------------------------
 Reporter:  anonymous      |       Owner:  jonas
     Type:  defect         |      Status:  new  
 Priority:  normal         |   Milestone:  0.9.5
Component:  ticket system  |     Version:  0.9.4
 Severity:  normal         |    Keywords:       
---------------------------+------------------------------------------------
 If a user is logged into Trac and either creates or modifies a ticket
 he/she can falsely claim to be someone else by entering false information
 in the "Your email or username" field.  Also, in the timeline it will use
 the information from this field rather than the user who is logged in.

 The current behavior is fine for guest or anonymous users but for cases
 where someone is logged in the edit field should be replaced with static
 text.

-- 
Ticket URL: <http://projects.edgewall.com/trac/ticket/3031>
The Trac Project <http://trac.edgewall.com/>


More information about the Trac-Tickets mailing list