Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Fixed
-
2.0.5, 2.2.13, 2.4.4, 2.6.2
-
None
Description
lars krapf reported an XSS in the DirListingExportHandler and provided the attached patch.
Attachments
Attachments
Issue Links
- is cloned by
-
JCR-3950 XSS in DirListingExportHandler
- Closed
- relates to
-
SLING-3262 Upgrade embedded jackrabbit-jcr-server version in o.a.s.jcr.webdav
- Closed