Skip to content

Conversation

@juliofarah
Copy link
Contributor

@juliofarah juliofarah commented Apr 12, 2021

What does this PR do?
This PR fixes a potential XSS based prototype solution on Segment.io, reported here: https://segment.atlassian.net/browse/SECOPS-1881

Jira Change-Control ticket: https://segment.atlassian.net/browse/CC-7271

Are there breaking changes in this PR?
No

Testing
Testing completed successfully in prod via trying to pollute prototype via URL:
image

@juliofarah juliofarah marked this pull request as ready for review April 13, 2021 21:54
@juliofarah juliofarah merged commit c2a21c2 into master Apr 13, 2021
@juliofarah juliofarah deleted the xss branch April 13, 2021 22:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants