Re: create_from_cgi question

[prev] [thread] [next] [Date index for 2004/06/02]

From: Tony Bowden
Subject: Re: create_from_cgi question
Date: 08:10 on 02 Jun 2004
On Tue, Jun 01, 2004 at 10:54:10AM -0400, Jesse Sheidlower wrote:
> Since then I've been wondering, though, why it is that on a
> create, "If this fails, $obj will be a defined object,
> containting [sic] the errors, as with an update, but will not
> contain the values submitted". I'd think that it would be
> pretty critical for it to contain the values submitted, so
> that in a typical application you could re-fill the form based
> on what was submitted and give the errors so the user knows
> what to change.

It's only really an object to maintain consistency of the error
reporting. If the untainting has failed, then the object isn't well
defined. And if the values don't untaint properly, then you certainly
don't want to be using them...

Tony

(message missing)

create_from_cgi question
Jesse Sheidlower 14:54 on 01 Jun 2004

Re: create_from_cgi question
Tony Bowden 08:10 on 02 Jun 2004

Re: create_from_cgi question
Jesse Sheidlower 15:14 on 02 Jun 2004

Re: create_from_cgi question
Tony Bowden 15:23 on 02 Jun 2004

create_from_cgi question
Peter Speltz 22:34 on 03 Nov 2004

Re: create_from_cgi question
Tony Bowden 01:03 on 04 Nov 2004

Generated at 11:34 on 01 Dec 2004 by mariachi v0.52