Uploaded image for project: 'Moodle'
  1. Moodle
  2. MDL-50060

Message contacts search has no limit

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Won't Fix
    • Icon: Minor Minor
    • None
    • 2.7.7, 2.8.5
    • Messages
    • MOODLE_27_STABLE, MOODLE_28_STABLE

      1. Go to your messages, select "Contacts"
      2. Hit the search button
      3. Search for a single letter and press "Search"

      Expected

      • Results are limited

      Actual

      • All matching results are returned

      That is a potential performance and usability issue. As well as security in a minor scenario as it could lead to DDoS attacks.

            Unassigned Unassigned
            fred Frédéric Massart
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved:

                Error rendering 'clockify-timesheets-time-tracking-reports:timer-sidebar'. Please contact your Jira administrators.