html-forms icon indicating copy to clipboard operation
html-forms copied to clipboard

Vulnerability when using a field as To field in send mail action

Open sam-d-brown opened this issue 2 years ago • 0 comments

If you're using a field for a message action like a To field, a user can abuse this by setting the field to whatever they want to make the form send message to whatever email address they like.

For example, I have a select field on my form with a list of email addresses and names. I can inspect element, change the selected value to a different email, and the form will send an email to that address.

I've fixed this with some custom validation to make sure the form only sends to a list of pre-defined emails, but this could be fixed in the plugin by checking the email the form is sending to is set on the given field

sam-d-brown avatar Jul 27 '23 10:07 sam-d-brown