Details

    • Type: Bug
    • Status: Closed
    • Resolution: Fixed
    • Affects Version/s: 5.2.3, 5.2.9 EE, 6.0.6 GA, 6.0.11 EE, 6.1.0 CE RC1
    • Fix Version/s: 5.2.X EE, 6.0.12 EE, 6.1.0 CE RC1
    • Component/s: Util, Util > Shopping
    • Labels:
      None
    • Environment:
      Tomcat 6.0 + MySQL. Firefox 4.0.0. 5.2.x. Revision 79098.
      Tomcat 6.0 + MySQL. Firefox 4.0.0. 6.0.x. Revision 79098.
      Tomcat 6.0 + MySQL. Firefox 4.0.0. 6.1.x. Revision 79098.
    • Branch Version/s:
      6.0.x, 5.2.x
    • Backported to Branch:
      Committed

      Description

      1. Add a Shopping portlet.
      2. Add a Item.(But title is JS cose "<script type="text/javascript">alert("Hello")</script>").
      3. Click Item.
      4. Click Add to Shopping Cart.
      5. Click Checkout.
      6. Write all message.
      7. Click Continue.

      I can see the JS performed.Alert box tips"Hello".

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              eric.min Eric Min (Inactive)
              Reporter:
              paul.piao Paul Piao (Inactive)
              Participants of an Issue:
              Recent user:
              Esther Sanz
              Votes:
              0 Vote for this issue
              Watchers:
              0 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:
                Days since last comment:
                9 years, 31 weeks, 3 days ago

                  Packages

                  Version Package
                  5.2.X EE
                  6.0.12 EE
                  6.1.0 CE RC1