Project

General

Profile

Actions

Bug #17066

closed

CVE-2016-8613 - XSS in live output

Added by Ivan Necas over 7 years ago. Updated about 6 years ago.

Status:
Closed
Priority:
High
Assignee:
Category:
Foreman
Target version:
Fixed in Releases:
Found in Releases:

Description

Missed escaping in live output can allow XSS, when the execution code produces a valid HTML/JavaScript code.

Actions

Also available in: Atom PDF