Bug XenForo does accept invalid email adresses

There is a bug in this version
K

Kirby

Guest
XenForo does accept email adresses like 1@1.1.

Such an email ist invalid because 1.1 ist not an IPv4 address, not an IPv6 address and not a valid FQDN:
RFC 3696: Application Techniques for Checking and Transformation of Names
There is an additional rule that essentially requires that top-level domain names not be all-numeric
Click to expand...

PHP's built-in filter methods would correctly reject such an email:
PHP:

var_dump(filter_var('1@1.1', FILTER_VALIDATE_EMAIL));

Continue reading...