Details
-
Improvement
-
Status: Closed
-
Major
-
Resolution: Fixed
-
None
-
None
Description
The ServicesServlet outputs the value of the filter request parameter as is; this needs escaping otherwise the html output might get destroyed
Attachments
Issue Links
- is superceded by
-
FELIX-6132 XSS possible in service console
- Closed