diff -ur moin-1.5.4.orig/MoinMoin/userform.py moin-1.5.4/MoinMoin/userform.py
--- moin-1.5.4.orig/MoinMoin/userform.py	2006-05-11 12:24:00.000000000 -0400
+++ moin-1.5.4/MoinMoin/userform.py	2006-09-06 13:10:50.000000000 -0400
@@ -67,6 +67,11 @@
         if form.has_key('cancel'):
             return
 
+	# Partially prevent form spoofing
+	for remove_item in self.cfg.user_form_remove:
+	    if form.has_key(remove_item):
+		del form[remove_item]
+
         if form.has_key('account_sendmail'):
             if not self.cfg.mail_enabled:
                 return _("""This wiki is not enabled for mail processing.
