MantisBT: master-2.15 4efac90e
Author | Committer | Branch | Timestamp | Parent |
---|---|---|---|---|
dregad | atrol | master-2.15 | 2018-07-04 05:29 | master ee30e00a |
Affected Issues | 0024580: CVE-2018-13055: Reflected XSS in view filters page | |||
Changeset | Fix XSS in filter_form_draw_inputs() (CVE-2018-13055) Ömer Çıtak, Security Researcher at Netsparker, reported this Prevent the attack by sanitizing the output of $_SERVER['PHP_SELF'] Fixes 0024580 |
|||
mod - core/filter_form_api.php | Diff File |