Opened 8 years ago

Closed 7 years ago

#3709 closed defect (wontfix)

Handle non-integer values in fields marked as integers better

Reported by: karsten Owned by:
Priority: Medium Milestone:
Component: TorStatus Version:
Severity: Keywords:
Cc: jfehr@… Actual Points:
Parent ID: Points:
Reviewer: Sponsor:

Description

George reports:

For a small issue, if you go to the advanced search page and give a
non-integer value to fields marked as integers - like orport, dirport,
bandwidth or uptime - you get django's debugging page, which
fortunately doesn't contain super-sensitive information.

We turned off the Debug mode, so there's no debugging page anymore. But now we only get an empty page in the error case. There should be some output saying that only integers are allowed in those fields. More generally, we should make sure that we check all input very carefully.

Child Tickets

Change History (2)

comment:1 Changed 8 years ago by jfehr

Cc: jfehr@… added

comment:2 Changed 7 years ago by karsten

Resolution: wontfix
Status: newclosed

We stopped maintaining TorStatus long ago in favor of Onionoo/Atlas. This problem is TorStatus-specific, so we won't work on it. Closing.

Note: See TracTickets for help on using tickets.