Login security concern/fluke

Suggestions and site feedback
SpeedoLuvSVK
posted 2 years ago
Hi admin(s), I've observed this happening multiple times now: On the login screen, I enter my login and pasword, hit the login button(or cofnirm by Enter). Page gets refreshed (=I stay on the login page, entries for login and password are emptied) but the URL in the browser shows login AND password. This seems to be quite a security concern. It does not happen every time I log in, but I would think this can be reproduced with multiple tries. Next time I observe this, I might add the full URL displayed in the browser (but basically it is just spandexparty.com/login=XYZ?Password=ABC). Please have a look into this if you can. Thanks!

8eight88eight8 liked this.

spandexpartyadmin
posted 2 years ago
Hey there, I remember this (your) feedback about this some time ago. I looked at it thoroughly and couldn't reproduce it or find anything in the code that would lead to this. Now with your message here I had another deep dive into this topic. I was able to reproduce it with javascript disabled. the site is kind of viewable without javascript but it's essential to have it enabled. not even the login works without javascript. So I'm wondering if you can reproduce it in a different way? if you feel comfortable you can send a screen capture video of you reproducing it without javascript disabled and send it to support@spandexparty.com.
spandexpartyadmin
posted 2 years ago
I just pushed a fix regarding the javascript-less functionality. but maybe it also fixed your issue? can you check again?

8eight88eight8,James_LycraJames_Lycra liked this.

SpeedoLuvSVK
posted 2 years ago
Hey Admin, thanks for having a look into this! I just loged in multiple times (~5) without this occuring. Sooo, preliminary, looks good. Should I have this appear again, will let you know. Thanks for your work!
spandexpartyadmin
posted 2 years ago
posted by: SpeedoLuvSVK
Hey Admin, thanks for having a look into this! I just loged in multiple times (~5) without this occuring. Sooo, preliminary, looks good. Should I have this appear again, will let you know. Thanks for your work!
that's great to hear. and if it comes back, please let me know again your browser and version. Cheers!

SpeedoLuvSVKSpeedoLuvSVK liked this.