MantisBT - Piwigo
View Issue Details
0002152Piwigouser commentspublic2011.01.29 12:562011.04.16 20:06
eric 
mistic100 
normalfeaturealways
closedfixed 
WampServerWindows Vista2.1
2.1.6 
2.2.12.2.1 
any
Apache 1.3.x
0002152: Comments revalidation when modified
If gallery is set for the admin validates comments filed before publication and allows users to edit their own comments, users can modify the comments as they want (that's normal) but the admin no longer has to validate them again and they are immediately visible.

To enforce protection against Spam, admins should revalidate every change on comments in this case.
http://fr.piwigo.org/forum/viewtopic.php?id=19385 [^]
No tags attached.
Issue History
2011.01.29 12:56ericNew Issue
2011.01.29 12:56ericbrowser => any
2011.01.29 12:56ericWeb server => Apache 1.3.x
2011.04.04 21:00mistic100Statusnew => assigned
2011.04.04 21:00mistic100Assigned To => mistic100
2011.04.06 10:55svnCheckin
2011.04.06 10:55svnNote Added: 0004951
2011.04.06 10:58mistic100Statusassigned => resolved
2011.04.06 10:58mistic100Fixed in Version => 2.3
2011.04.06 10:58mistic100Resolutionopen => fixed
2011.04.06 11:20rvelicesNote Added: 0004952
2011.04.06 11:20rvelicesStatusresolved => feedback
2011.04.06 11:20rvelicesResolutionfixed => reopened
2011.04.06 11:31mistic100Note Added: 0004953
2011.04.06 21:24svnCheckin
2011.04.06 21:24svnNote Added: 0004960
2011.04.06 21:31mistic100Statusfeedback => resolved
2011.04.06 21:31mistic100Fixed in Version2.3 => 2.2.0
2011.04.06 21:31mistic100Resolutionreopened => fixed
2011.04.16 20:05plgStatusresolved => closed
2011.04.16 20:06plgFixed in Version2.2.0 => 2.2.1
2011.04.16 20:06plgTarget Version => 2.2.1

Notes
(0004951)
svn   
2011.04.06 10:55   
[Subversion] r10097 by mistic100 on trunk

-----[Subversion commit log]----------------------------------------------------
bug:2152 Comments revalidation when modified
(0004952)
rvelices   
2011.04.06 11:20   
Quick question: is there a reason to have changed picture_comment.inc.php in your commit ?

The test if (!isset($comment_action)) is completeley useless in my opinion ..
(0004953)
mistic100   
2011.04.06 11:31   
it is, because for display a message I can't redirect the user, then $_POST['content'] is defined, and the page 'picture_comment.inc.php' try to add a new comment with the content of the updated comment.

But... it could be easier to unset $_POST['content'] after saving the comment.
will change this
(0004960)
svn   
2011.04.06 21:24   
[Subversion] r10122 by mistic100 on trunk

-----[Subversion commit log]----------------------------------------------------
bug:2152 no special parameter for updated comment validation