Bd Contact Security
|
3 posts
|
Since the author didn’t react to my mail I’m going to post this one here. The Bd Contact Form plugin has a serious security issue that allows email header injection (regulary exploited to send spam). The user input from $_POST isn’t properly sanitized. |
|
343 posts
|
Yep, sorry but I was very very busy with some personal stuff… I will suspend it. |
|
31 posts
|
Any news on the BD Contact security issue? |
|
343 posts
|
No, for the moment I’m working at the Blogroll plugin and at the Comments plugin. I have some plans for Bd Contact too. |
|
31 posts
|
thx for the heads up |