You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Description of the problem including expected versus actual behavior:
Steps to reproduce:
Spammer registered with name 900$ PER DAY HERE www.example.com and email [email protected]
A real user receives a message:
Subject: Welcome 900$ PER DAY HERE www.example.com!
To: [email protected]
From: "My company" <[email protected]>
MIME-Version: 1.0
Content-Type: text/plain; charset=utf-8
Hello 900$ PER DAY HERE www.example.com!
To finish activating your account - please visit https://my-domain.com/register/confirm/...
Regards,
the Team.
My domain is banned due to spamming.
PS: Prohibiting the use of spaces in the username is not a solution to the problem.
The text was updated successfully, but these errors were encountered:
You have a Spamtrap vulnerabilities.
Symfony FOSUserBundle versions:
Actual in Subject from 14 Jan 2012
FOSUserBundle/Resources/translations/FOSUserBundle.en.yml
Line 47 in 8ae256d
And in body from 16 Apr 2011 or older
FOSUserBundle/Resources/translations/FOSUserBundle.en.yml
Line 26 in 9295012
Now it is also relevant:
https://github.com/FriendsOfSymfony/FOSUserBundle/blob/master/Resources/translations/FOSUserBundle.en.yml#L43
This is relevant for many languages:
FOSUserBundle/Resources/translations/FOSUserBundle.de.yml
Line 47 in 8ae256d
FOSUserBundle/Resources/translations/FOSUserBundle.fr.yml
Line 47 in 8ae256d
FOSUserBundle/Resources/translations/FOSUserBundle.ru.yml
Line 47 in 8ae256d
Description of the problem including expected versus actual behavior:
Steps to reproduce:
Spammer registered with name
900$ PER DAY HERE www.example.com
and email[email protected]
A real user receives a message:
My domain is banned due to spamming.
PS: Prohibiting the use of spaces in the username is not a solution to the problem.
The text was updated successfully, but these errors were encountered: