7b53e610c1
The watch words controller creation function, create_or_update_word(), doesn’t validate the size of the replacement parameter, unlike the word parameter, when creating a replace watched word. So anyone with moderator privileges can create watched words with almost unlimited characters. |
||
---|---|---|
.. | ||
components | ||
modals | ||
pages | ||
admin_user_badges.rb | ||
cdp.rb |