[#919] Cross Site Scripting in the FusionForge

Description

Summary:

Detailed description

Hello all!

Where is i can put security bug? I found reflected xss on FusionForge.

Is the FusionForge project being updated?

The Best Regards!

Vincent

General Information
Submitted by:
Vinc Tester
Date Submitted: 2021-02-06 17:53
Last Modified by:
Franck Villaume
Last Modified: 2022-04-06 16:21
Permalink: https://fusionforge.org/tracker/a_follow.php/919
Actions
Monitor
Votes: 0/1 (0%)
Internal Fields
Data Type: Bugs
Assigned to: Nobody (None)
State: Open
Priority: 3
Extra Fields
Resolution:
Accepted As Bug
Severity:
major
Target Release:
6.1.1
Found in Version:
6.1
Follow-up tabs
Message  ↓
Date: 2021-06-08 16:42
Sender: Brais Arias Rio

Do you have some news related with this bug? We have noticed that /notepad.php has this vulnerability. Do you have solved this? Do you have some recommendation/workaround to avoid that someone exploits it?

Date: 2021-02-08 22:12
Sender: Vinc Tester

Hello,

i sent email for you from your profile (@trivialdev.com)

Date: 2021-02-08 08:40
Sender: Franck Villaume

Hi,

you can contact the core team directly using the general mailing-list. In parallel I contact you by email.

No attached documents

No related commits.

Field Old Value Date By
Target Release6.12022-04-06 16:21
Franck Villaume

No relations found.