MantisBT: master-2.28 44f490bc

Author Committer Branch Timestamp Parent
dregad dregad master-2.28 2026-04-12 19:40 master-2.28 b1ebc577
Affected Issues  0037015: CVE-2026-40607: Stored XSS in Saved-Filter Owner Column (Manager+)
Changeset

Fix XSS in manage_filter_page.php

Escape the filter owner for display.

Fixes 0037015, GHSA-f633-865q-2mhh

mod - manage_filter_page.php Diff File