FORUMS CLOSED DUE TO SPAM. YOU STILL CAN ADD POST!

Bd Contact Security

Feed 4 posts, 3 voices

Avatar
3 posts

Since the author didn’t react to my mail I’m going to post this one here.

The Bd Contact Form plugin has a serious security issue that allows email header injection (regulary exploited to send spam). The user input from $_POST isn’t properly sanitized.

 
Avatar
343 posts

Yep, sorry but I was very very busy with some personal stuff… I will suspend it.

 
Avatar
31 posts

Any news on the BD Contact security issue?

 
Avatar
343 posts

No, for the moment I’m working at the Blogroll plugin and at the Comments plugin. I have some plans for Bd Contact too.

 
Avatar
31 posts

thx for the heads up