Red Hat Bugzilla – Bug 830641
Users can successfully register with mismatching captcha.
Last modified: 2015-05-14 21:11:32 EDT
Created attachment 590817 [details]
the register shown as the picture can be registered successfully.
Description of problem:
When I register in the register page, I input correct email,password. but a wrong captcha which is a little diffrence with the given one (the captcha given is "and rnchgo" ,and I inputed "ann..rnchgg"). It turns out to be a successful page and I can receive the email to confirm.
Version-Release number of selected component (if applicable):
Steps to Reproduce:
1.Go to openshift register page.
2.Input a valid email and valid password
3.Input a captcha which is a little dismatched with the given captcha. (For example,if the given captcha is "freedom homendsh" ,you could input "freedo..homendsa");
4.Click "Sign up".
It will register successfully, and I can receive a letter to confirm.
It should be left on the register page with error message like
"Captcha text was Incorrect, please try again".
This issue exists on devenv_1827, stg.openshift.redhat.com, and openshift.redhat.com
Google is fairly flexible about what the user enters if the whitespace appears to be correct. Since the implementation of the captcha is completely google defined, our tests merely need to validate that incorrect captchas force the user to refresh the page.