Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

neofarg has a stored XSS vulnerability #92

Closed
g0h3aler opened this issue Apr 16, 2021 · 2 comments
Closed

neofarg has a stored XSS vulnerability #92

g0h3aler opened this issue Apr 16, 2021 · 2 comments

Comments

@g0h3aler
Copy link

It can be executed after writing the XSS Payload in the copyright setting in the background, and it is triggered when it is accessed in the foreground
image
image
image

@0BuRner
Copy link

0BuRner commented Apr 18, 2021

Hello,

This security issue is of low level since you need to be admin in order to trigger that XSS, if I'm not mistaken.

Thanks for the report anyway.

@BloberSh
Copy link
Member

BloberSh commented Apr 19, 2021

Fixed in DEV bc4b1e2

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants