Uploaded image for project: 'Bamboo Data Center'
  1. Bamboo Data Center
  2. BAM-14928

Javascript in Stash application title executes on plan create

    XMLWordPrintable

Details

    • Bug
    • Resolution: Fixed
    • Low
    • 5.7.0
    • None
    • Security

    Description

      While using the testing data I setup an App Link between Stash and Bamboo 5.6.0
      The Stash I was using is called "<script>alert(666)</script> Long Ståш Title with MiXeDcase and.lots.of.dots spaces àáâãäåçèéêëìíîðñòôõöö ~`!@#$%^&*()_+-={}|[]\:";<>?,./'国際交流λληνιабвгдежзبْجَدِيَّة عَرَبِيَّة‎עִבְרִיתदिंदुसरोवर1234567890_long _long_long long so it's max length allowed!"
      While I was on the "Create a Plan" page I click "Link new repository" and when I clicked on the Stash logo, the javascript in title was executed twice.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              sgoodhew Scott Goodhew (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: