Email Address Issue
-
@tonyshowoff said in Mangolassi is leaking everyone's email address!:
I'm seeing the new icons, gravatar does cache, if you want to see one updated you need to either clear your cache, or go to the URL of the image and just refresh to reload it, it'll be updated elsewhere. I updated the non-gravatar icon to be me, now the rest of you are the freaks.
But based on what would it cache? The image file would be cached, sure, but not the linkage to tell it to display it.
-
@tonyshowoff said in Mangolassi is leaking everyone's email address!:
@scottalanmiller said in Mangolassi is leaking everyone's email address!:
Looks like that cleaned up the stupid issue with the notifications too. We removed that plugin a month ago.
No change.
Okay, so with Gravatar definitely gone, that wasn't it.
-
@scottalanmiller said in Mangolassi is leaking everyone's email address!:
@tonyshowoff said in Mangolassi is leaking everyone's email address!:
I'm seeing the new icons, gravatar does cache, if you want to see one updated you need to either clear your cache, or go to the URL of the image and just refresh to reload it, it'll be updated elsewhere. I updated the non-gravatar icon to be me, now the rest of you are the freaks.
But based on what would it cache? The image file would be cached, sure, but not the linkage to tell it to display it.
Yes the image file is cached on your machine, it may be requesting a different size and thus have another cache counter.
-
@scottalanmiller @tonyshowoff I am not seeing emails anymore, just my own now.....
-
@tonyshowoff said in Mangolassi is leaking everyone's email address!:
@scottalanmiller said in Mangolassi is leaking everyone's email address!:
@tonyshowoff said in Mangolassi is leaking everyone's email address!:
I'm seeing the new icons, gravatar does cache, if you want to see one updated you need to either clear your cache, or go to the URL of the image and just refresh to reload it, it'll be updated elsewhere. I updated the non-gravatar icon to be me, now the rest of you are the freaks.
But based on what would it cache? The image file would be cached, sure, but not the linkage to tell it to display it.
Yes the image file is cached on your machine, it may be requesting a different size and thus have another cache counter.
but even if it is cached locally, nothing on the page is calling it. If it displays, even cached, it means that something is triggering it to display because the page itself is all new.
-
@aaronstuder said in Mangolassi is leaking everyone's email address!:
@scottalanmiller @tonyshowoff I am not seeing emails anymore, just my own now.....
Ah, so many our OWN are always displayed? That seems weird, but okay. @tonyshowoff see if you can see mine, it has "scott" in it
-
Just cleared my cache to the beginning of time some Gravatars still show - some do not.
-
@gjacobse @tonyshowoff isn't using Gravatars
-
This post is deleted! -
@aaronstuder said in Mangolassi is leaking everyone's email address!:
@scottalanmiller @tonyshowoff I am not seeing emails anymore, just my own now.....
Confirmed, they're not there anymore, at least not in this request.
-
Seems to be fixed.....
-
Thanks for catching this, good work everyone tracking that down.
-
@scottalanmiller said in Mangolassi is leaking everyone's email address!:
Thanks for catching this, good work everyone tracking that down.
I'm not seeing it in any of the requests either, the long polling ones nor the ones from just scrolling down the page. I guess it's gone.
-
@tonyshowoff said in Mangolassi is leaking everyone's email address!:
@scottalanmiller said in Mangolassi is leaking everyone's email address!:
Thanks for catching this, good work everyone tracking that down.
I'm not seeing it in any of the requests either, the long polling ones nor the ones from just scrolling down the page. I guess it's gone.
Sigh of relief.
-
@scottalanmiller said in Mangolassi is leaking everyone's email address!:
https://community.nodebb.org/topic/8776/nodebb-email-exposure-bug
Why don't you make an actual bug report on the github?
https://github.com/julianlam/nodebb-plugin-gravatar/issues -
@JaredBusch said in Mangolassi is leaking everyone's email address!:
@scottalanmiller said in Mangolassi is leaking everyone's email address!:
https://community.nodebb.org/topic/8776/nodebb-email-exposure-bug
Why don't you make an actual bug report on the github?
https://github.com/julianlam/nodebb-plugin-gravatar/issuesProbably get a faster response from more people that way, it wasn't exactly a minor issue. I've reported things on github, they were ignored, then I emailed the owner and they were like "oh, I didn't see that." Doesn't look super active on github, if it was, I'd definitely say do that first.
-
Also tagging the developer @julian
-
-
-