Actions
Bug #16019
closedCVE-2016-6319 - Persistent XSS in job invocation form triggered by unescaped user input name
Description
The value is used for label in job invocation form. The vulnerability/fix belongs to Foreman which stopped escaping the label since [1.6.0](https://github.com/theforeman/foreman/commit/2af7c64a3b9c2699a3131483bc2344b50c138542#diff-d07b3cdd6c00768e06bfed349d3c808fR157).
Actions