Skip to content

DG26-8: HTML Injection - API tokens#2887

Merged
jakub-tldr merged 6 commits into
release/2.0from
api-token-html-injection
May 7, 2026
Merged

DG26-8: HTML Injection - API tokens#2887
jakub-tldr merged 6 commits into
release/2.0from
api-token-html-injection

Conversation

@jakub-tldr
Copy link
Copy Markdown
Contributor

This issue is for vulnerability found by our security team during cyclical penetration testing of our solution.
Once the entire process is completed, a detailed report will be published, providing all interested parties with detailed information about the tests conducted and the issues that were reported on the soon to be published dedicated web page:

https://defguard.net/pentesting/

Please follow any issue you are interested, when the issue will be closed there will be linked pull request fixing the issue.

@jakub-tldr jakub-tldr marked this pull request as draft May 6, 2026 19:11
@jakub-tldr jakub-tldr marked this pull request as ready for review May 7, 2026 11:03
@jakub-tldr jakub-tldr merged commit b38fa0d into release/2.0 May 7, 2026
14 checks passed
@jakub-tldr jakub-tldr deleted the api-token-html-injection branch May 7, 2026 11:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants