Skip to content

Conversation

@bluestreak01
Copy link
Member

@bluestreak01 bluestreak01 commented Jan 8, 2026

it was possible to execute foreign code inside web console:

select '<iframe src="data:text/html,<script>alert(1)</script>"></iframe>'

@bluestreak01 bluestreak01 changed the title fix: fix XSS security vulnerability fix XSS security vulnerability Jan 8, 2026
@emrberk emrberk merged commit b42fd9f into main Jan 8, 2026
3 checks passed
@emrberk emrberk deleted the vi_xss_fix branch January 8, 2026 09:47
@emrberk emrberk mentioned this pull request Jan 8, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants