Skip to content

Conversation

@dbauszus-glx
Copy link
Member

@dbauszus-glx dbauszus-glx commented Nov 18, 2025

This PR removes the msg param from the logout condition in the API script.

@dbauszus-glx dbauszus-glx added Bug A genuine bug. There must be some form of error exception to work with. Security Ticket relates to either the authentication process, security headers, and or encryption. labels Nov 18, 2025
@dbauszus-glx dbauszus-glx changed the title remoove logout msg msg param injection Nov 18, 2025
@dbauszus-glx dbauszus-glx linked an issue Nov 18, 2025 that may be closed by this pull request
@dbauszus-glx dbauszus-glx marked this pull request as ready for review December 16, 2025 18:31
@sonarqubecloud
Copy link

Copy link
Member

@cityremade cityremade left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Parameter msg still sits as optional in login and register forms where it defaults to ''.
Useless.

@dbauszus-glx dbauszus-glx merged commit 4d05f6c into GEOLYTIX:patch Dec 18, 2025
4 checks passed
@dbauszus-glx dbauszus-glx deleted the msg-param-injection branch December 18, 2025 16:26
@RobAndrewHurst RobAndrewHurst changed the title msg param injection fix(msg): param injection Jan 9, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Bug A genuine bug. There must be some form of error exception to work with. Security Ticket relates to either the authentication process, security headers, and or encryption.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

User controlled msg param

4 participants