Open issues

Ecommerce side-effecting GET in BasketAddItemsView

Description

The view BasketAddItemsView has side-effects and is a GET. It should be a
POST.
Note: a roll-out plan may require roll on to a new endpoint and off this
one.

As a potentially related risk ticket, Ecommerce should try Nimisha's
middleware to determine what other issues there may be of this nature. I
don't know where that middleware lives right now.

Robert Raposa

edX | Software Architect | rraposa@edx.org

141 Portland Street, 9th floor

Cambridge, MA 02139
http://www.edx.org <http://www.edxonline.org/>

[image:
http://www.e-learn.nl/media/blogs/e-learn/edX_Logo_Col_RGB_FINAL.jpg?mtime=1336074566]


You received this message because you are subscribed to the Google Groups "security group" group.
To unsubscribe from this group and stop receiving emails from it, send an email to security+unsubscribe@edx.org.
For more options, visit https://groups.google.com/a/edx.org/d/optout.

Steps to Reproduce

None

Current Behavior

None

Expected Behavior

None

Reason for Variance

None

Release Notes

None

User Impact Summary

None

Status

Assignee

Feanil Patel

Reporter

Feanil Patel

Labels

None

Reach

None

Impact

None

Platform Area

Platform & Infrastructure - Security

Customer

None

Partner Manager

None

URL

None

Contributor Name

None

Groups with Read-Only Access

None

Actual Points

None

Category of Work

None

Platform Map Area (Levels 1 &amp; 2)

None

Platform Map Area (Levels 3 &amp; 4)

None

Priority

CAT-3
Configure