[TYPO3-core] RFC #11586: Problem with fix of the SQL injection bug

Martin Kutschker masi-no at spam-typo3.org
Fri Oct 23 10:11:58 CEST 2009


Xavier Perseguers schrieb:
> Hi,
> 
> This is a SVN follow-up patch request.
> 
> I cannot find this RFC in this mailing list and associated bug in
> bugtracker has its access being denied.
> 
> As found by Simon Browning in dev list with thread "4.3 beta 2 - problem
> with Front end Editing". The change introduced a bug by introducing new
> class member TSFE_EDIT defined as protected whereas a consequent bunch
> of code in Core (including both old and new feedit) used this variable
> as public.

I'm not familiar with FE editing, but the solution seems to me a bit too far on the easy way. Maybe
there was a reason to protect the member.

Masi


More information about the TYPO3-team-core mailing list