[wp-trac] [WordPress Trac] #43857: Show the comment / awaiting moderation message even without opt-in

WordPress Trac noreply at wordpress.org
Tue Jun 26 21:06:03 UTC 2018


#43857: Show the comment / awaiting moderation message even without opt-in
-------------------------------------------------+-------------------------
 Reporter:  imath                                |       Owner:  (none)
     Type:  defect (bug)                         |      Status:  new
 Priority:  normal                               |   Milestone:  4.9.8
Component:  Privacy                              |     Version:  4.9.6
 Severity:  normal                               |  Resolution:
 Keywords:  has-patch gdpr needs-testing needs-  |     Focuses:
  refresh                                        |
-------------------------------------------------+-------------------------

Comment (by mdawaffe):

 Just dropping a note here that the current patch allows anyone to
 enumerate and view all unapproved comments (that have a non-empty
 `comment_author_email`) by adding `?unapproved=1`, `?unapproved=2`, ….

 I agree that the current behavior is frustrating.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/43857#comment:32>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list