[Bug 34308] HTML/JS/XSS injection in visual editor (attribute sanitation on links)

2012-10-29 Thread bugzilla-daemon
https://bugzilla.wikimedia.org/show_bug.cgi?id=34308 James Forrester changed: What|Removed |Added Target Milestone|--- |VE-deploy-2012-10-15 --- Comment #3

[Bug 34308] HTML/JS/XSS injection in visual editor (attribute sanitation on links)

2012-10-15 Thread bugzilla-daemon
https://bugzilla.wikimedia.org/show_bug.cgi?id=34308 James Forrester changed: What|Removed |Added CC||jforres...@wikimedia.org,

[Bug 34308] HTML/JS/XSS injection in visual editor (attribute sanitation on links)

2012-06-21 Thread bugzilla-daemon
https://bugzilla.wikimedia.org/show_bug.cgi?id=34308 Roan Kattouw changed: What|Removed |Added Status|NEW |RESOLVED CC|

[Bug 34308] HTML/JS/XSS injection in visual editor (attribute sanitation on links)

2012-02-11 Thread bugzilla-daemon
https://bugzilla.wikimedia.org/show_bug.cgi?id=34308 Mark A. Hershberger changed: What|Removed |Added Priority|Unprioritized |High CC|