[wp-hackers] Security: username as class in commenst

Matt Martz matt at sivel.net
Tue Mar 10 22:33:50 GMT 2009


-1

There was a similar discussion some time ago relating to author pages.  One problem with using the nick name is that it doesn't have to be unique whereas the username does.

Frank Bueltge <frank at bueltge.de> wrote:

>Hello,
>the new comment-functions has the username of the author as class.
>please can you change this in the newxt release to the nickname.
>
>i think this is a problem for security.
>
>I hope you enjoy this.
>Frank
>
>http://bueltge.de/
>http://wpengineer.com/
>_______________________________________________
>wp-hackers mailing list
>wp-hackers at lists.automattic.com
>http://lists.automattic.com/mailman/listinfo/wp-hackers

-- 
--
Matt Martz
matt at sivel.net
-- 
--
Matt Martz
matt at sivel.net


More information about the wp-hackers mailing list