Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

When creating new graphs, cross site injection is possible #4834

Closed
TheWitness opened this issue Jun 19, 2022 · 0 comments
Closed

When creating new graphs, cross site injection is possible #4834

TheWitness opened this issue Jun 19, 2022 · 0 comments
Labels
bug Undesired behaviour confirmed Bug is confirm by dev team resolved A fixed issue SECURITY A security issue reported through CVE
Milestone

Comments

@TheWitness
Copy link
Member

Describe the bug

There is an XSS issue in graphs_new.php. CVE pending.

Expected behavior

Less Cacti security issues

@TheWitness TheWitness added bug Undesired behaviour SECURITY A security issue reported through CVE confirmed Bug is confirm by dev team labels Jun 19, 2022
@TheWitness TheWitness added this to the v1.2.22 milestone Jun 19, 2022
TheWitness added a commit that referenced this issue Jun 19, 2022
XSS Issue in graphs_new.php
@TheWitness TheWitness added the resolved A fixed issue label Jun 19, 2022
TheWitness added a commit that referenced this issue Jun 19, 2022
@netniV netniV changed the title XSS Issue in graphs_new.php When creating new graphs, cross site injection is possible Aug 14, 2022
@github-actions github-actions bot locked and limited conversation to collaborators Nov 28, 2022
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
bug Undesired behaviour confirmed Bug is confirm by dev team resolved A fixed issue SECURITY A security issue reported through CVE
Projects
None yet
Development

No branches or pull requests

1 participant