MistForums - Forum software built for Garry's Mod!
32 replies, posted
Rest in peace facepunch thread
I had an idea similar to this that I was working on lol. Nice job.
Nice! This looks really awesome. Will be using this for my new server when I get my server fixed.
Why is this being rated dumb? It's pretty cool.
[del]I don't know what's with the slew of boxes either. I certainly have no use for it, but it looks a hell of a lot cleaner than that garbage everyone else uses.[/del]
[editline]x[/editline]
I rescind my statement. See Matt's post, this is hilarious.
Please change it to CAMI instead of forcing ULX
personally i just dislike how poorly screen real estate is used, as well as the soddy navigation
why can't people just use a familiar setup like facepunch
[editline]edit[/editline]
go from scratch or go home fam
Is not very mobile friendly unlike some of your other creations :(
[IMG]https://i.gyazo.com/df0f28d52f9fbf620e7032f7816d357e.png[/IMG]
It's clipping everything on the left side on my I phone 4s
[QUOTE=Handsome Matt;50447891][URL="http://www.mistchat.com/thread/9"]why can you just put HTML straight into posts[/URL]
could easily xss, steal cookies or run any harmful javascript on any users
[editline]3rd June 2016[/editline]
shoutbox has xss too.[/QUOTE]
wow dont hake my personal home computer
But like what if I have my own host and want to use it myself, instead of having to pay for your hosting..
So it's not self-hosted, it's not open source, it has multiple vulnerabilities, and you have to pay for it? Why would anyone use this?
people are now xss exploiting the shoutbox lmfao
Seem spretty cool I guess, but you should have double checked and made sure you fixed all the obvious XSS injection vulnerabilities since you're trying to sell it. Right now it just looks really bad on you and your product with these vulnerabilities.
[QUOTE=RayChamp;50446368]
These video is 100% legit
[/QUOTE]
:v:
Still enjoying 3 different xss test windows > harlem shake > baguettefodder.
[QUOTE=Handsome Matt;50447891][URL="http://www.mistchat.com/thread/9"]why can you just put HTML straight into posts[/URL]
could easily xss, steal cookies or run any harmful javascript on any users
[editline]3rd June 2016[/editline]
shoutbox has xss too.[/QUOTE]
Thank you, Laravel usually doesn't make you worry about XSS, it has functionality built in it to combat it.
I have fixed the issue, I slipped with not verifying areas that allow other html tags.
It took me until the next day because you guys slammed me right after I went to bed haha.
[QUOTE=colincooke;50448877]please don't
[IMG]http://i.imgur.com/DeWj7Ul.png[/IMG][/QUOTE]
Fixed my friend, thank you.
[QUOTE=Chuckymore;50448440][img]http://puu.sh/pfepZ/0ca16715a7.png[/img]
authentication*[/QUOTE]
Fixed, appreciate the feedback.
[QUOTE=NinjaTomate;50448083]So it's not self-hosted, it's not open source, it has multiple vulnerabilities, and you have to pay for it? Why would anyone use this?[/QUOTE]
In the future a developer version of a portal will be made, where people can upload modules and themes.
I understand why you don't like the self hosting because of some cons, but in this situation I feel the pros outweigh the cons.
But you never know, I can always change it up, but for now I feel self hosting is a good choice.
Yes, a few vulnerabilities did pop up, Laravel tricked me and I fooled myself, it happens, sorry.
but they are fixed now.
Also, it has a free option, so you don't have to pay for anything.
[QUOTE=Bings;50447943]Is not very mobile friendly unlike some of your other creations :(
[IMG]https://i.gyazo.com/df0f28d52f9fbf620e7032f7816d357e.png[/IMG]
It's clipping everything on the left side on my I phone 4s[/QUOTE]
Right, hey if we could add each other on steam and we can work on your responsiveness for your phone, would be awesome.
Appreciate it.
I went ahead and did a few small changes to help the responsiveness, your direct issue has been solved.
[QUOTE=code_gs;50447734]Please change it to CAMI instead of forcing ULX[/QUOTE]
I am up for that, if you want, we should add each other on steam so I can get in more detail about CAMI.
BTW: Any fixes I make will sync to all forums, so any fix you see on here, you will see on your forum as well!
[QUOTE=RayChamp;50448914]
BTW: Any fixes I make will sync to all forums, so any fix you see on here, you will see on your forum as well![/QUOTE]
While it does make updates easy, so does just destroying everything. There better be an option to disable the automatic syncing else it will someday bite your ass.
[QUOTE=Plaster;50448997]While it does make updates easy, so does just destroying everything. There better be an option to disable the automatic syncing else it will someday bite your ass.[/QUOTE]
Yeah, it has pros and cons, but ultimately the worst that can happen is a rollback from the last 24 hours, and a quick git revert from the last update.
Automatic database saves and git are great.
-snip-
I posted bug report on the forums.
I mean, I know we should discuss ratings but I think this is getting some unnecessary flak just cause he doesn't know the jargon of FacePunch.
It's always nice to see someone doing something for the community.
Not protected from cross-site scripting. Nice!
[QUOTE=Segecos;50454697]Not protected from cross-site scripting. Nice![/QUOTE]
your web vulnerability scanner is bad, unless Google decides to insert malicious code into their JS CDN, it won't be a problem.
[QUOTE=Rope;50460176]your web vulnerability scanner is bad, unless Google decides to insert malicious code into their JS CDN, it won't be a problem.[/QUOTE]
Scanner? :quotes:
OT: Issue seems to be fixed!
You really should go and activate your Windows man.
This site is so fucking exploitable I can still inject javascript with the chatbox even after it was "fixed" - and also I can with my name.
[editline]a[/editline]
I have worked with RayChamp to get it fixed, and he was very professional with fixing the issues at hand. He has fixed the exploits I was using earlier and to the best of my knowledge it can't be exploited like I did.
[QUOTE=MeepDarknessM;50481692]This site is so fucking exploitable I can still inject javascript with the chatbox even after it was "fixed" - and also I can with my name.[/QUOTE]
Your chatbox injection didn't work for me on Firefox.
I've had an amazing experience making my community website with MistForums. Any suggestions I had were quickly implemented and Ray provides exceptional support. I will certainly be recommending this service to all of my friends.
We now have functionality to install SSL on your forum with a click of a button.
If you have a premium forum, you don't have to pay anything extra, certificates can run you around $100 annually.
[url]https://www.mistchat.com/thread/introducing-automated-ssl-certificates-1177[/url]
[IMG]http://puu.sh/pPeNg/41de42c2a4.png[/IMG]
Sorry, you need to Log In to post a reply to this thread.