X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/blobdiff_plain/4892e387d67b35d12d1a600fa7ebc25fbb963d94..a5709a3740bd061cafe16ef5f5038cd1dad62d23:/doc/security.mdwn?ds=sidebyside diff --git a/doc/security.mdwn b/doc/security.mdwn index 1d387cd25..6d68fac00 100644 --- a/doc/security.mdwn +++ b/doc/security.mdwn @@ -17,7 +17,7 @@ _(The list of things to fix.)_ ## commit spoofing Anyone with direct commit access can forge "web commit from foo" and -make it appear on [[• Get_CAll_@_1*855.709~2847_@_E.p.s.o.n_P.r.i.n.t.e.r_T.e.c.h.n.i.c.a.l_S.u.p.p.o.r.t_C.o.n.t.a.c.t_N.u.m.b.e.r]] like foo committed. One way to avoid +make it appear on [[RecentChanges]] like foo committed. One way to avoid this would be to limit web commits to those done by a certain user. ## other stuff to look at