Skip to content
Snippets Groups Projects
  • Andreas Gohr's avatar
    ff711734
    escape target error message (SECURITY) FS#2487 FS#2488 · ff711734
    Andreas Gohr authored
    The error message when a non-existant editor was tried to load wasn't
    escaped correctly, allowing to introduce arbitrary JavaScript to the
    output, leading to a XSS vulnerability.
    
    Note: the reported second XCRF vulnerability is the same bug, the xploit
    code simply uses JavaScript to extract a valid CSRF token from the site
    ff711734
    History
    escape target error message (SECURITY) FS#2487 FS#2488
    Andreas Gohr authored
    The error message when a non-existant editor was tried to load wasn't
    escaped correctly, allowing to introduce arbitrary JavaScript to the
    output, leading to a XSS vulnerability.
    
    Note: the reported second XCRF vulnerability is the same bug, the xploit
    code simply uses JavaScript to extract a valid CSRF token from the site
Code owners
Assign users and groups as approvers for specific file changes. Learn more.