Details
-
Suggestion
-
Resolution: Unresolved
-
None
-
None
Description
Creating a user with trailing or leading whitespaces can cause some e-mails to that user to fail - for this reason, when creating a user, it would be beneficial if the e-mail field input was sanitized in order to prevent those leading/trailing whitespaces.
The issues resulting from the current input method can be seen, for example, by following these steps:
- Create bogus user by setting their password , and with a valid email, but add whitespace at the beginning or end of the email in the email field.
- Use "forgotuserpassword.action" using the above email without whitespace