Skip to content

Web: remove XSS vulnerability.#5149

Merged
lfield merged 1 commit intomasterfrom
dpa_sort_by
Mar 15, 2023
Merged

Web: remove XSS vulnerability.#5149
lfield merged 1 commit intomasterfrom
dpa_sort_by

Conversation

@davidpanderson
Copy link
Contributor

team_members.php and top_*.php have a textual parameter "sort"by". Validate it.

team_members.php and top_*.php have a textual parameter "sort"by".
Validate it.
@lfield
Copy link
Contributor

lfield commented Mar 15, 2023

Tested on LHC@home

@lfield lfield merged commit 090ca2f into master Mar 15, 2023
@AenBleidd AenBleidd deleted the dpa_sort_by branch August 15, 2023 09:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

Archived in project

Development

Successfully merging this pull request may close these issues.

3 participants