This thread beat you to reporting the first. Garat mentioned that he was looking into it and they're thinking about the character limit (though it isn't much of a priority from his tone, understandably). Trophy made one of these a while back about some random story somebody put in. I wonder if it's the same person
So unlike this forum, the lobby has no character limit? Wow, I should start posting my stories in the lobby. *evil grin*
you know if UBER leave the no character limit but make the host forcibly one line height the trolls get trolled right back.
if there really is no limit AT ALL it could potentially be possible to actually kill everything simple by pasting in a few megabytes or more of text. The clients try to download that text once per second while viewing the lobby. I like the idea of trolling tolls though.
I don't want to try it, but I wonder if you can do any sort of javascript injection through that field.
well you know what they say : you're only a good guy if you're exposing vulnerabilities. I say do it.
Exposing them is one thing, but don't go testing this sort of thing in the stable lobby or you move beyond testing into actually exploiting a security bug.
I would have been very surprised to see this work. PA had some issues with this kind of thing in the past, but that past is long gone. EDIT: Also really, no harm done either way, I doubt anybody would even notice a console.log somewhere
yeah that's my point, you'd just do one small test script that open up a webpage or some silly thing, and then file a bug report and the security loop would be closed. EDIT : well done cola
https://forums.uberent.com/threads/pte-stream-71453.63344/ Fixed in PTE, But until then, let's enjoy the next chapter of Mrs. Grey's harlotry.