X-Git-Url: http://git.cyclocoop.org/?a=blobdiff_plain;f=RELEASE-NOTES-1.29;h=5a38cf91a2fbe6f66f3ea5497d52196fee5d8cc8;hb=3e285ba9d692352423cb7cf4291d35c35535d628;hp=6c5380942bde932fdf563b96df07464c5aab840a;hpb=b6c3fc93e9fcf7b2d13cea246b7fe87acf860a45;p=lhc%2Fweb%2Fwiklou.git diff --git a/RELEASE-NOTES-1.29 b/RELEASE-NOTES-1.29 index 6c5380942b..5a38cf91a2 100644 --- a/RELEASE-NOTES-1.29 +++ b/RELEASE-NOTES-1.29 @@ -20,6 +20,10 @@ production. === Bug fixes in 1.29 === === Action API changes in 1.29 === +* Submitting sensitive authentication request parameters to action=clientlogin, + action=createaccount, action=linkaccount, and action=changeauthenticationdata + in the query string is now an error. They should be submitted in the POST + body instead. === Action API internal changes in 1.29 ===