-
Bug
-
Resolution: Fixed
-
High
-
2.10
Use markup:
{contentbylabel:labels=foo|title=<script>alert('Vulnerable')</script>}
The script will be executed when the page is viewed.
Use markup:
{contentbylabel:labels=foo|title=<script>alert('Vulnerable')</script>}
The script will be executed when the page is viewed.
Confluence 2.10.x users can install the attached plugin jar (version 1.5.3.5) to fix this issue.