Add a configuration form to configure a whitelist for referer URIs

Created on 28 November 2023, 7 months ago
Updated 12 December 2023, 7 months ago

Add a settings form at Commerce > Configuration > Orders > Cart links with a basic textarea for whitelist the referer URIs. The controller for the /cart-links route must compare the referer URI before processing a link. The main idea is to avoid folks linking from external sources into the site and effectively DDOSing it by causing mass manipulation of carts from a remote source.

πŸ“Œ Task
Status

Fixed

Version

1.0

Component

Code

Created by

πŸ‡ΊπŸ‡¦Ukraine marchuk.vitaliy Rivne, UA

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Merge Requests

Comments & Activities

Production build 0.69.0 2024