HomePhorge

Fix cross-site scripting (XSS) via HTML messages with malicious svg/namespace

Description

Fix cross-site scripting (XSS) via HTML messages with malicious svg/namespace

Credits to SSD Secure Disclosure (https://ssd-disclosure.com/)

Details

Provenance
machniakAuthored on Jul 3 2020, 9:29 AM
mollekopfPushed on Aug 21 2023, 3:06 PM
Parents
R3:9f53d216ddea: Elastic: Improve styles specificity, fixed browser tests
Branches
Unknown
Tags
Unknown

Event Timeline