  The PHP Scalability Myth
Subject:   Hidden variables for session state?
Date:   2003-10-17 12:09:23
From:   anonymous2
Response to: Hidden variables for session state?

My dear person..... To keep the user from inserting "anyting" they want one only needs to restrict hidden fields to a know set of responses AND restrict their use to the $_POST['<variable_name>'] usage type. These two things coupled make for a situation that is quite annoying to those who would "put anything they want" in the hidden field value. Have a nice day.

