7 ms·
DON'T USE IT This site has a serious security flaw: every registered user can change the email and password of every account. Edit: I've sent the site op an e
by eik3_de 12y ago
DON'T USE IT
This site has a serious security flaw: every registered user can change the email and password of every account.
Edit: I've sent the site op an email
- bresc 12y agoFixed
- eik3_de 12y agodo you know lobste.rs? Have you considered using it, it seems quite mature, can be white labeled and also is an rails app.
- sgdesign 12y agoThere's also http://telesc.pe http://telesc.pe :)
- krapp 12y agoIf it's fixed, care to describe what the bug was if it was interesting?
- eik3_de 12y agoWhen you visited a profile, there was a "edit" button so that you could just change email and password of every user. The kind of bug my grandma would find just by clicking around.
- mqsiuser 12y agoIt's a side project (and given the setup doomed to fail anyway). Super big (US) IT-companies struggel with how to being profitable, whilest IT is capital/work intensive (to avoid these embarassing bugs). There is a long-tail, but it's not for you.
- zerooneinfinity 12y agoRecommended as is.