[
https://issues.apache.org/jira/browse/JSPWIKI-1112?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Juan Pablo Santos Rodríguez updated JSPWIKI-1112:
-------------------------------------------------
Security: (was: Security Vulnerability Disclosure)
> EDITOR fields (changenote,comment-signature ) vulnerable to XSS
> ----------------------------------------------------------------
>
> Key: JSPWIKI-1112
> URL: https://issues.apache.org/jira/browse/JSPWIKI-1112
> Project: JSPWiki
> Issue Type: Bug
> Reporter: Dirk Frederickx
> Priority: Critical
> Fix For: 2.11.0-M5
>
>
>
> Some fields of the edit and comment JSPs need XSS protection.
>
> Reported by Jegatheesh A
--
This message was sent by Atlassian Jira
(v8.20.1#820001)