Details

    • Type: Bug
    • Status: Closed
    • Resolution: Fixed
    • Affects Version/s: 6.1.30 EE GA3, 6.2.0 CE B1
    • Component/s: Security Vulnerability
    • Labels:
    • Environment:

      Description

      1. Go to Control Panel/Wiki.
      2. Click Add Wiki button.
      3. Fill title: <script>alert("xss")</script>.
      4. Save

      Expected result:
      Users able to create wiki page.

      Actual result:
      XSS appear

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                mark.jin Mark Jin (Inactive)
                Reporter:
                mark.jin Mark Jin (Inactive)
                Participants of an Issue:
                Recent user:
                Esther Sanz
              • Votes:
                0 Vote for this issue
                Watchers:
                0 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved:
                  Days since last comment:
                  5 years, 47 weeks, 5 days ago