XMLWordPrintableJSON

    Details

    • Type: Sub-task
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 17.12.03
    • Fix Version/s: 18.12.01, 17.12.05
    • Component/s: content
    • Labels:
      None
    • Sprint:
      Bug Crush Event - 21/2/2015

      Description

      Harshit Shukla harshit.shukz@gmail.com reported a Reflected XSS vulnerability in content component to the OFBiz security team, and we thank him for that.

      I'll later quote here his email message when the vulnerability will be fixed. It's a post-auth vulnerability so we did not ask for a CVE.

        Attachments

          Activity

            People

            • Assignee:
              jleroux Jacques Le Roux
              Reporter:
              jleroux Jacques Le Roux
            • Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: