New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

XSS in custom SQL query #190

Closed
blabla1337 opened this Issue Mar 23, 2015 · 1 comment

Comments

Projects
None yet
2 participants
@blabla1337
Contributor

blabla1337 commented Mar 23, 2015

Escaping is not done correctly in response of the custom Query tab in Seccubus

@blabla1337 blabla1337 added the bug label Mar 23, 2015

@seccubus seccubus added this to the 1. Next release (maybe?) milestone Aug 14, 2015

@seccubus seccubus modified the milestones: Version 2.17?, Version 2.16 Sep 15, 2015

@seccubus seccubus self-assigned this Oct 30, 2015

@seccubus seccubus modified the milestones: v2.22 - Schedule?, Version v2.20 Oct 30, 2015

@seccubus seccubus modified the milestones: 1. Before new GUI, v2.22 - Schedule? Jan 28, 2016

@seccubus seccubus modified the milestones: 1. Before new GUI, High prio bugs Jun 7, 2016

@seccubus

This comment has been minimized.

Member

seccubus commented Jun 15, 2017

Fixed in PR #411

seccubus added a commit that referenced this issue Jun 15, 2017

@seccubus seccubus closed this Jun 15, 2017

@seccubus seccubus referenced this issue Jun 15, 2017

Merged

Release v2.34 #467

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment