Ok anyways I just learned about cache poisoning and it seemed to me that your attempts to track agendaposter alts could have inadvertently made you vulnerable.
Tldr: if you don't tell cloudflare to include whatever login cookie equivalents you accept in the cache key, then now and then, after the cache entry expires, someone will get logged in as a different user. maybe. Idk.
Your comment has been automatically removed because you forgot
to include trans lives matter.
Don't worry, we're here to help! We
won't let you post or comment anything that doesn't express your love and acceptance towards
the trans community. Feel free to resubmit your comment with trans lives matter
included.
This is an automated message; if you need help,
you can message us here.
Your comment has been automatically removed because you forgot
to include trans lives matter.
Don't worry, we're here to help! We
won't let you post or comment anything that doesn't express your love and acceptance towards
the trans community. Feel free to resubmit your comment with trans lives matter
included.
This is an automated message; if you need help,
you can message us here.
Jump in the discussion.
No email address required.
Who changed your userpic btw? Are we going to have to relogin five times in the next three days?
Btw I have an educated guess about what might be causing your troubles, ask me about it!
Jump in the discussion.
No email address required.
ITS BECAUSE @Aevann GOT AGENDAPOSTERED
TRANS LIVES MATTER
Jump in the discussion.
No email address required.
Ok anyways I just learned about cache poisoning and it seemed to me that your attempts to track agendaposter alts could have inadvertently made you vulnerable.
https://portswigger.net/research/practical-web-cache-poisoning
Tldr: if you don't tell cloudflare to include whatever login cookie equivalents you accept in the cache key, then now and then, after the cache entry expires, someone will get logged in as a different user. maybe. Idk.
Jump in the discussion.
No email address required.
WHAT CAUSED IT WAS @Aevann PUTTING "*" BEFORE THE DOMAIN NAME IN PAGE RULES WHEN @Aevann MADE OLD.RDRAMA.NET
SO @Aevann CHANGED "RDRAMA.NET/ASSETS/*" TOO "*.RDRAMA.NET/ASSETS/*" FOR EXAMPLE WHICH CAUSED THAT FRICKING HEADACHE
NO IDEA WHY TF TBH LMAO
TRANS LIVES MATTER
Jump in the discussion.
No email address required.
I don't understand anything of that but I'm half asleep and quickly moving towards fully asleep.
I have a request though: can you please fix the agendaposter filter so that it doesn't replace "to" with "too"? This triggers me so much.
Jump in the discussion.
No email address required.
its a feature not a bug!
Jump in the discussion.
No email address required.
Hi @Aevann,
Your comment has been automatically removed because you forgot to include
trans lives matter
.Don't worry, we're here to help! We won't let you post or comment anything that doesn't express your love and acceptance towards the trans community. Feel free to resubmit your comment with
trans lives matter
included.This is an automated message; if you need help, you can message us here.
Jump in the discussion.
No email address required.
More options
Context
More options
Context
its a feature not a bug!
trans lives matter
Jump in the discussion.
No email address required.
More options
Context
More options
Context
More options
Context
what caused it was @Aevann putting "*" before the domain name in page rules when @Aevann made old.rdrama.net
so @Aevann changed "rdrama.net/assets/" too ".rdrama.net/assets/*" which caused that fricking headache
no idea why tf tbh lmao
Jump in the discussion.
No email address required.
Hi @Aevann,
Your comment has been automatically removed because you forgot to include
trans lives matter
.Don't worry, we're here to help! We won't let you post or comment anything that doesn't express your love and acceptance towards the trans community. Feel free to resubmit your comment with
trans lives matter
included.This is an automated message; if you need help, you can message us here.
Jump in the discussion.
No email address required.
More options
Context
More options
Context
More options
Context
More options
Context
More options
Context