Bug#481504: patch proposal for mantis CSRF

2008-05-19 Thread Thijs Kinkhorst
On Monday 19 May 2008 07:48, Steffen Joeris wrote: Attached you'll find a complete patch for the mantis issue. I still need to investigate it a little further and test it. The patch can be summarised as only allowing POST to things that change stuff. It's not entirely agreed upon that this can

Bug#481504: patch proposal for mantis CSRF

2008-05-18 Thread Steffen Joeris
tags 481504 patch thanks Hi Attached you'll find a complete patch for the mantis issue. I still need to investigate it a little further and test it. I would also appreciate the maintainer's opinion :) Cheers Steffen diff -u mantis-1.0.8/debian/patches/00list mantis-1.0.8/debian/patches/00list