Details
-
Bug
-
Resolution: Fixed
-
High
-
2.5.4
-
None
-
Standalone
Description
Description:
XSS vulnerability at "Edit Space Permissions" page
Exploit:
Write to the "Grant permission to" field: "<script>alert(document.cookie)</script>"