-Wolfie- opened this issue on Apr 25, 2005 ยท 16 posts
svdl posted Fri, 29 April 2005 at 3:48 PM
A SessionID NEVER should be in the query string, it should be in the body of the HTTP request - and it should be hashed. I think this is a major flaw in the design of the site software. Linking to another thread, or to a gallery image, or to a marketplace item, well, that's rather common for a post in a forum. Elizabyte is absolutely right. Fixing this flaw in the site software is easy, but it might take some work. I certainly hope it'll be fixed - soon!
The pen is mightier than the sword. But if you literally want to have some impact, use a typewriter