-
Notifications
You must be signed in to change notification settings - Fork 35
Closed
Copy link
Labels
bugSomething isn't workingSomething isn't workingbug/behaviourbehaviour bugbehaviour bugbug/confirmedThis bug is confirmed to happen & reproducibleThis bug is confirmed to happen & reproduciblepriority/highan issue of high priorityan issue of high priority
Description
Describe the bug
I tried sending a encoded link (was reporting an xss in his website) and now entering a DM crashes sable. https://REDACTED/display/?t=%3Csvg/onload=alert(%22message%C4%99%20glow%C4%99%20message%C5%82message.%22);%3E
Reproduction
- Send encoded link
- Crash
Expected behavior
No response
Platform and versions
- OS: Linux armv81
- Browser: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Mobile Safari/537.36
- Sable: v1.12.2-dev (8f46cff)Additional context
Automated Bug Report
Error occurred in the application.
Error Message
URI malformed
Stacktrace
URIError: URI malformed
at decodeURIComponent (<anonymous>)
at https://sable.sugary.gay/assets/index-D7zWf1Iz.js:82314:32
at mI.render (https://sable.sugary.gay/assets/index-D7zWf1Iz.js:62955:65)
at nDe (https://sable.sugary.gay/assets/index-D7zWf1Iz.js:63238:19)
at https://sable.sugary.gay/assets/index-D7zWf1Iz.js:63254:46
at https://sable.sugary.gay/assets/index-D7zWf1Iz.js:250:14
at https://sable.sugary.gay/assets/index-D7zWf1Iz.js:219:19
at O (https://sable.sugary.gay/assets/index-D7zWf1Iz.js:203:35)
at O (https://sable.sugary.gay/assets/index-D7zWf1Iz.js:209:15)
at B (https://sable.sugary.gay/assets/index-D7zWf1Iz.js:218:14)
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
bugSomething isn't workingSomething isn't workingbug/behaviourbehaviour bugbehaviour bugbug/confirmedThis bug is confirmed to happen & reproducibleThis bug is confirmed to happen & reproduciblepriority/highan issue of high priorityan issue of high priority