bug(server): missing input validation on replay header fields #62
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Bug
solitaire_server/src/replays.rsstores replay metadata (game mode, player name, duration, move count) from client-submitted JSON without validating field lengths, ranges, or character sets. A malicious client can:Affected file
solitaire_server/src/replays.rsFix
Add a validation layer before any database write:
klondike,time_attack,daily)Return
400 Bad Requestwith a descriptive error message on validation failure.