Express Form Block Notification E-mail

Permalink 0 0 Browser Info Environment
Once you have checked and saved the checkbox to send a notification on submission it is not possible to un-check and save the same option. It is also possible to enter an invalid e-mail or no e-mail at all and save the block. This results in a error message on submission. This error message is not something a guest filling in the form needs to see. It should not be possible to leave the input empty or save an invalid e-mail address in the first place.

My suggestion is to add validation on the input(check if empty if the checkbox is checked and also check if it's a valid e-mail address if the field is not empty and the checkbox is checked). To be safe, check the validity of the from,to and reply-to e-mail addresses again before trying sending the e-mails. My second suggestion is to not show the guest an error message on submission, send a message or notification to the site admin instead if something goes wrong.

Status: New

concrete5 Environment Information

# concrete5 Version
Core Version - 8.4.3
Version Installed - 8.4.3
Database Version - 20180716000000

# concrete5 Packages
KIWI Connexys (0.0.1), Kiwi CSV (0.0.1), Kiwi Giscare (0.0.2), Kiwi Postcode (0.0.1), Kiwi Themes (0.0.3)

# concrete5 Overrides
blocks/date_navigation/controller.php, blocks/date_navigation/view.js, blocks/date_navigation/view.php, blocks/date_navigation, blocks/form/auto.js, blocks/form/controller.php, blocks/form/db.xml, blocks/form/form_setup_html.php, blocks/form/images/form-faq.jpg, blocks/form/images, blocks/form/mini_survey.php, blocks/form/templates/faq_image.php, blocks/form/templates/no_form_title.php, blocks/form/templates, blocks/form/tools/services.php, blocks/form/tools, blocks/form/view.css, blocks/form/view.js, blocks/form/view.php, blocks/form/_controller.php, blocks/form/_view.js, blocks/form/_view.php, blocks/form, blocks/header_banner/add.php, blocks/header_banner/controller.php, blocks/header_banner/db.xml, blocks/header_banner/edit.php, blocks/header_banner/form_setup_html.php, blocks/header_banner/icon.png, blocks/header_banner/view.php, blocks/header_banner, blocks/header_banner_slider/add.php, blocks/header_banner_slider/controller.php, blocks/header_banner_slider/db.xml, blocks/header_banner_slider/edit.php, blocks/header_banner_slider/form_setup_html.php, blocks/header_banner_slider/icon.png, blocks/header_banner_slider/view.css, blocks/header_banner_slider/view.js, blocks/header_banner_slider/view.php, blocks/header_banner_slider, blocks/link_block/add.php, blocks/link_block/controller.php, blocks/link_block/db.xml, blocks/link_block/edit.php, blocks/link_block/form_setup_html.php, blocks/link_block/icon.png, blocks/link_block/view.php, blocks/link_block, blocks/search/controller.php, blocks/search/templates/header_search/view.js, blocks/search/templates/header_search/view.php, blocks/search/templates/header_search, blocks/search/templates, blocks/search/view.php, blocks/search, blocks/show_signup/add.php, blocks/show_signup/controller.php, blocks/show_signup/db.xml, blocks/show_signup/edit.php, blocks/show_signup/form_setup_html.php, blocks/show_signup/icon.png, blocks/show_signup/view.js, blocks/show_signup/view.php, blocks/show_signup, elements/_header_required.php, mail/default_form_client.php, mail/default_form_customer.php, mail/default_form_show.php

# concrete5 Cache Settings
Block Cache - Off
Overrides Cache - Off
Full Page Caching - Off
Full Page Cache Lifetime - Every 6 hours (default setting).

# Server Software

# Server API

# PHP Version

# PHP Extensions
bcmath, blackfire, calendar, cgi-fcgi, Core, ctype, curl, date, dom, exif, fileinfo, filter, ftp, gd, gettext, hash, iconv, igbinary, imap, intl, json, ldap, libxml, mbstring, memcached, msgpack, mysqli, mysqlnd, openssl, pcre, PDO, pdo_mysql, pdo_pgsql, pdo_sqlite, pgsql, Phar, posix, readline, Reflection, session, shmop, SimpleXML, soap, sockets, sodium, SPL, sqlite3, standard, sysvmsg, sysvsem, sysvshm, tokenizer, wddx, xdebug, xml, xmlreader, xmlwriter, xsl, Zend OPcache, zip, zlib

# PHP Settings
max_execution_time - 180
log_errors_max_len - 1024
max_file_uploads - 20
max_input_nesting_level - 64
max_input_time - 180
max_input_vars - 1000
memory_limit - 512M
post_max_size - 100M
upload_max_filesize - 100M
ldap.max_links - Unlimited
memcached.sess_lock_max_wait - not set
memcached.sess_lock_wait_max - 2000
memcached.sess_server_failure_limit - 0
mysqli.max_links - Unlimited
mysqli.max_persistent - Unlimited
pcre.backtrack_limit - 1000000
pcre.recursion_limit - 100000
pgsql.max_links - Unlimited
pgsql.max_persistent - Unlimited
session.cache_limiter - <i>no value</i>
session.gc_maxlifetime - 7200
soap.wsdl_cache_limit - 5
xdebug.max_nesting_level - 512
xdebug.max_stack_frames - -1
xdebug.var_display_max_children - 128
xdebug.var_display_max_data - 512
xdebug.var_display_max_depth - 3
opcache.max_accelerated_files - 10000
opcache.max_file_size - 0
opcache.max_wasted_percentage - 5

Browser User-Agent String

Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36