Closed shuding closed 9 years ago
I found out that an intentionally constructed illegal POST request will pass the sign up validation, cause there's no check of length of password:
password
name:quietshu email:quietshu@gmail.com username:quietshu hashed_password:123
I found out that an intentionally constructed illegal POST request will pass the sign up validation, cause there's no check of length of
password
: