Skip to content

5.7.0

@codingjoe codingjoe tagged this 26 Jan 12:18
An attacker was able to use a `field_id` from a "secret" field
and use if on any even the default public select2 view and
receive the data without authentication.
Assets 2
Loading