-
Bug
-
Resolution: Obsolete
-
Medium
-
None
-
3.5
-
None
-
Internet Explorer with Confluence.
Steps to reproduce
- Create following HTML file and upload to any of Confluence page.
<script> alert("Cookie: " + document.cookie); </script>
- Open the file on Internet Explorer 7.
- Then, you will see the javascript in that HTML file executed automatically.
Issue happens with IE9,8,7 with Confluence 3.5.
Firefox and Safari presents a download 'save as' dialogue box and does not render.
Form Name |
---|
[CONFSERVER-22529] HTML file type attachments are automatically rendered in IE.
Workflow | Original: JAC Bug Workflow v3 [ 2885540 ] | New: CONFSERVER Bug Workflow v4 [ 2996675 ] |
Workflow | Original: JAC Bug Workflow v2 [ 2791297 ] | New: JAC Bug Workflow v3 [ 2885540 ] |
Status | Original: Resolved [ 5 ] | New: Closed [ 6 ] |
Workflow | Original: JAC Bug Workflow [ 2726185 ] | New: JAC Bug Workflow v2 [ 2791297 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2390198 ] | New: JAC Bug Workflow [ 2726185 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 [ 2281137 ] | New: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2390198 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5.1 - TEMP [ 2222167 ] | New: Confluence Workflow - Public Facing - Restricted v5 [ 2281137 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2168882 ] | New: Confluence Workflow - Public Facing - Restricted v5.1 - TEMP [ 2222167 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 [ 1928371 ] | New: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2168882 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v3 [ 1729247 ] | New: Confluence Workflow - Public Facing - Restricted v5 [ 1928371 ] |
Workflow | Original: CONF Bug Subtask WF (TEMP) [ 1686878 ] | New: Confluence Workflow - Public Facing - Restricted v3 [ 1729247 ] |