#210 - multiple xss vulns

Description

Are there any input validations?

There are XSS vulns all over the site. At least while viewing a ticket <title>XXX</title>, and the eMail input field in UserCP are not checked at all.

I stopped testing here because of acute disbelieve. I hope I got something very wrong..

Activity

Jack closed as Closed 14 years and 5 months ago

14 years ago by Jack

  • Milestone 3.0 2.3.2

Status

Closed
Jack
Highest

Details

Defect
2.3.2
-
2.2
Blocker

Tracking

stetus
14 years and 9 months ago
11 years and 12 months ago
0
-
-