Project

General

Profile

Actions

Task #106345

open

Sign extbase __identity field value with HMAC

Added by Torben Hansen 6 days ago. Updated 5 days ago.

Status:
Under Review
Priority:
Should have
Assignee:
Category:
Extbase
Target version:
-
Start date:
2025-03-09
Due date:
% Done:

0%

Estimated time:
TYPO3 Version:
14
PHP Version:
Tags:
Complexity:
Sprint Focus:

Description

It is documented in the Security Guidelines, that the extbase __identity field can be manipulated. In order to prevent identity field manipulation, a HMAC should be appended to the field value.

Actions

Also available in: Atom PDF