? Pending

User tests: Successful: Unsuccessful:

avatar zero-24
zero-24
12 May 2020

Summary of Changes

Add CSRF prevention to com_postinstall

Testing Instructions

  • login to the backend
  • go to com_postinstall
  • make sure the "reset all messages" button works
  • make sure the "hide all messages" button works
  • use the "activate 2fa action" button and make sure it still works too

Expected result

All buttons have csrf protection

Actual result

Two buttons did not had an csrf protection.

Documentation Changes Required

none

Original report to the JSST by Khoa Bùi Đức Anh

avatar zero-24 zero-24 - open - 12 May 2020
avatar zero-24 zero-24 - change - 12 May 2020
Status New Pending
avatar joomla-cms-bot joomla-cms-bot - change - 12 May 2020
Category Administration com_postinstall
avatar zero-24 zero-24 - change - 12 May 2020
Labels Added: ?
avatar SharkyKZ SharkyKZ - test_item - 14 May 2020 - Tested successfully
avatar SharkyKZ
SharkyKZ - comment - 14 May 2020

I have tested this item successfully on 77c2c22


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/29045.

avatar pmleconte pmleconte - test_item - 14 May 2020 - Tested successfully
avatar pmleconte
pmleconte - comment - 14 May 2020

I have tested this item successfully on 77c2c22


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/29045.

avatar richard67 richard67 - change - 14 May 2020
Status Pending Fixed in Code Base
Closed_Date 0000-00-00 00:00:00 2020-05-14 12:42:58
Closed_By richard67
avatar richard67 richard67 - close - 14 May 2020
avatar richard67 richard67 - merge - 14 May 2020
avatar zero-24
zero-24 - comment - 14 May 2020

Thanks for the tests and the merge ?

Add a Comment

Login with GitHub to post a comment