#232 XSS in description field
Closed: Fixed None Opened 8 years ago by codeblock.

If I write: <script>alert("hi");</script> in the description field of a new project, the JS gets executed whenever I look at the newly created project's main page.


Login to comment on this ticket.

Metadata