Details
Description
The following issue was reported by one of our internal web security check tools:
Passing a title to the jobHistoryServer(jhs) or Nodemanager(nm) pages using a url similar to:
[https://[hostname]:[jhs_port]/jobhistory/about?title=12345%27%22]
or
[https://[hostname]:[nm_port]/node?title=12345]
sets the page title to be set to the value mentioned.
[Image attached]