django-forms-3

Last Updated :
Discuss
Comments

In a ModelForm with Meta.fields = 'all' what is the main security risk?

May skip mandatory fields

Converts widgets to TextInput

Disables validation

May include sensitive fields like is_admin

Tags:
Share your thoughts in the comments