ab7f429a10
Spammers can bypass form_spam_protect plugin by using GET instead of POST. Fix this, by ensuring that unsafe operations are POSTs, rather than GETs. |
||
---|---|---|
.. | ||
admin_controller_test.rb | ||
application_test.rb | ||
file_controller_test.rb | ||
routes_test.rb | ||
wiki_controller_test.rb |