[Koha-bugs] [Bug 26102] Javascript injection in intranet search

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Mon Feb 21 10:23:33 CET 2022


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=26102

--- Comment #51 from Jonathan Druart <jonathan.druart+koha at gmail.com> ---
Created attachment 130936
  -->
https://bugs.koha-community.org/bugzilla3/attachment.cgi?id=130936&action=edit
Bug 26102: [19.11] Prevent XSS when To.json is used: unimarc_field_4XX.tt

To test, edit a MARC framework to link a subfield to the
unimarc_field_4XX.tt. The process of triggering the plugin and selecting
a search result from the plugin popup should work correctly.

-- 
You are receiving this mail because:
You are watching all bug changes.


More information about the Koha-bugs mailing list