Or else you could simply ignore the question, set spam_answers to something for which you have an answer already (like say, a previously answered question!), set spam_answer to the appropriate answer... and you're good to go!
EDIT: ok whoops, I guess i might have spoken too soon. This isnt so much a vulnerability issue, as a logical issue. spam_answers shouldnt be revealed or visible publicly; but I fail to see why it should be made attr_accessible... Care to explain?
Or else you could simply ignore the question, set
spam_answersto something for which you have an answer already (like say, a previously answered question!), setspam_answerto the appropriate answer... and you're good to go!EDIT: ok whoops, I guess i might have spoken too soon. This isnt so much a vulnerability issue, as a logical issue.
spam_answersshouldnt be revealed or visible publicly; but I fail to see why it should be made attr_accessible... Care to explain?