timwoelfle/PlainChess

Move validation on server side

Inumedia opened this issue · 2 comments

It is incredibly easy as is to falsify moves and move your pieces anywhere on the board.

Example:
startColumn=5&startRow=8&endColumn=1&endRow=1

I'm curious...how would one recreate this? I can't falsify moves - I don't see the problem.

Yeah this was pretty fun, I opened a new game and moved c1 f8.
I don't think the purpose of this game is to be all that secure...