We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!
    • 21191
    • 236 Posts
    I think I stumbled onto a bug / vulnerability

    If you specify a sortBy=`title` for instance MODx will pop an error, Long story short, "title" is not a valid input for wayfinder in sortBy, "pagetitle" would be the correct one.

    Anyway I just think it should fail gracefully is all.

    I’m not sure if this could be used maliciously, but who knows, I just design crap.

    -shawn
      ~Shawn Himmelberger
      Check out my MODx Development and MODx Design Company - Himmelberger Design
      • 10449
      • 956 Posts
      It’s not a bug... just RTFM*
      http://www.muddydogpaws.com/development/wayfinder/parameters.html


      &sortBy
      default: menuindex
      values: [ id | menutitle | pagetitle | introtext | menuindex | published | hidemenu | parent | isfolder | description | alias | longtitle | type | template | random ]
      description: The sortBy parameter allows the output to be sorted by any of the above fields on a level by level basis. This means that each submenu will be sorted independently of all other submenus at the same level. Random will sort the output differently every time the page is loaded if the snippet is called uncached.


      There’s 3 different titles... just be specific smiley


      * read the fine manual
        • 21191
        • 236 Posts
        Well yes I know.. but the idea that a value passed that is not expected brings down modx is a bad thing right?
          ~Shawn Himmelberger
          Check out my MODx Development and MODx Design Company - Himmelberger Design