Reply to post:

'You're updated!' Drupal says, with fingers crossed behind back

roytrubshaw
Meh

My main problem is with the article itself, there's no real detail behind "borked update process" and following the link to the blog item leads to a piece apparently predicated on the success of a CSRF attack based on "http://yoursite/?q=admin/reports/updates/check".

I've just tried this on a couple of drupal sites, and in each case I get the "Access denied" error in some guise or other. (As I would expect as I'm not logged in with admin privileges.)

It's been some time since I've seen a Drupal URL that includes "?q=..." so thanks for the trip down memory lane anyway!

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon