Join GitHub today
GitHub is home to over 31 million developers working together to host and review code, manage projects, and build software together.Sign up
Stored XSS in "Add member field - tooltip" #760
There exists no escape when printing out tooltip under "Add member" (http://localhost/subrion-develop/panel/members/add/).
Tested on Chrome - Version 67.0.3396.99 (64-bit)
Steps to reproduce -