HomePhorge

Fix security issue where it was possible to bypass the CSS jail in HTML…

Description

Fix security issue where it was possible to bypass the CSS jail in HTML messages using :root pseudo-class (#6897)

Details

Provenance
machniakAuthored on Aug 27 2019, 1:33 PM
mollekopfPushed on Aug 21 2023, 3:06 PM
Parents
R3:057fb69bb9ac: Fix bug where some strict remote URIs in url() style were unintentionally…
Branches
Unknown
Tags
Unknown

Event Timeline