[Koha-bugs] [Bug 3759] XSS Exploit in Search Results.

bugzilla-daemon at kohaorg.ec2.liblime.com bugzilla-daemon at kohaorg.ec2.liblime.com
Wed Nov 4 23:53:28 CET 2009


http://bugs.koha.org/cgi-bin/bugzilla3/show_bug.cgi?id=3759


MJR <mjr at ttllp.co.uk> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |mjr at ttllp.co.uk
             Status|NEW                         |RESOLVED
         Resolution|                            |DUPLICATE




--- Comment #2 from MJR <mjr at ttllp.co.uk>  2009-11-04 22:53:28 ---
This is only a fix for one instance.  I think a general fix is needed, probably
by changing the default escape to HTML.


*** This bug has been marked as a duplicate of bug 3652 ***


-- 
Configure bugmail: http://bugs.koha.org/cgi-bin/bugzilla3/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are watching all bug changes.



More information about the Koha-bugs mailing list