Well, the script is pumping out what the user inputs; it's just that the web browser ignores the additional spaces...

As a test, 1 spaced:
Gizmo Is Cool

As a test, 10 spaces:
Gizmo Is Cool

Now, do a quick quote, it will show that I did indeed put 10 spaces, and Threads did indeed store 10 spaces. Thus, a browser issue and not really a threads "security" risk at all... Though I'm not sure how a check would work too well as items are not stored in the db without spaces; I suppose you could remove the space and md5 the value and store that md5 hash in the db and compare against that...


I am a Web Development Contractor, I do not work for UBBCentral. I have provided free User to User Support since the beginning of these support forums.
Do you need Forum Install or Upgrade Services?
Forums: A Gardeners Forum, Scouters World
UBB.threads: UBBWiki, UBB Styles, UBB.Sitemaps
Longtime Supporter & Resident Post-A-Holic
VNC Web Services: Code Modifications, Upgrades, Styling, Coding Services, Disaster Recovery, and more!