Menu

#20 security issue

open
nobody
None
5
2003-08-04
2003-08-04
No

There is a security issue that the profile information
is not escaped. I can include HTML which is a bad
thing. Suggested Fix, use HTMLEditFormat(Field, -1)
when you output the data.

Discussion


Log in to post a comment.

Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.