Security issues with edit post.
-
Hi Tareq,
Love the plugin, but i was having some issues with security when editing posts. When editing a post there are several hidden fields. So if a user changes these to shown he can do many changes that are unwanted. The user can change this to shown: <input type=”hidden” name=”post_author” value=”1″> and change the post author. Is there a way to remove these fields, or make them constant?
- The topic ‘Security issues with edit post.’ is closed to new replies.