continuum-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Maria Catherine Tan (JIRA)" <j...@codehaus.org>
Subject [jira] Commented: (CONTINUUM-2620) Fix XSS vulnerability in Continuum
Date Mon, 02 May 2011 03:43:22 GMT

    [ http://jira.codehaus.org/browse/CONTINUUM-2620?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=265403#action_265403
] 

Maria Catherine Tan commented on CONTINUUM-2620:
------------------------------------------------

TODO:
add validation to prevent xss attacks in xmlrpc

> Fix XSS vulnerability in Continuum
> ----------------------------------
>
>                 Key: CONTINUUM-2620
>                 URL: http://jira.codehaus.org/browse/CONTINUUM-2620
>             Project: Continuum
>          Issue Type: Task
>    Affects Versions: 1.3.7, 1.4.0 (Beta)
>            Reporter: Efraim Lorenz Longkines
>            Assignee: Maria Catherine Tan
>             Fix For: 1.3.8
>
>         Attachments: CONTINUUM-2620.patch
>
>
> Right now, continuum is vulnerable for cross-site scripting. See REDBACK-275 and REDBACK-276.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.codehaus.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

Mime
View raw message