• Welcome to the Chevereto user community!

    Here users from all over the world gather around to learn the latest about Chevereto and contribute with ideas to improve the software.

    Please keep in mind:

  • Chevereto Support CLST

    Support response

    Support checklist

    • Got a Something went wrong message? Read this guide and provide the actual error. Do not skip this.
    • Confirm that the server meets the System Requirements
    • Check for any available Hotfix - your issue could be already reported/fixed
    • Read documentation - It will be required to Debug and understand Errors for a faster support response

Banned account can be reactivated by resending activation mail

lovedigit

👽 Chevereto Freak
▶ Reproduction steps
  1. Create a test account with valid email address
  2. Set status to banned. Save.
  3. Now logout of admin account. Go to signup page > Click on "resend account activation" > enter banned account email ID.
  4. Go to email > click on activation link.
  5. Banned account status is set to valid again.
😢 Unexpected result

If account is banned, it shouldn't be activated by activation link or system should not send the email in the first place.

📃 Error log message

None.
 
  • Like
Reactions: rdn
Bug confirmed, I'm very sorry about this.
I can't tell you how many times this bug made my life harder.
I ended up adding everyone in global block list directly on my mail provider to avoid sending them activation link for the time being.
Thank you for looking into it.
 
Banned users will be totally banned from now on, the response for these will be:

1620052405043.png

The banned status will be detected very early, just after login and any action will be completely denied.
 
Back
Top