Content spoofing through the application/mathml+xml content-type in the Mozilla Firefox Browser - CVE-2017-18103

XMLWordPrintable

      The atlassian-http library, as used in various Atlassian products, before version 2.0.2 allows remote attackers to spoof web content in the Mozilla Firefox Browser through uploaded files that have a content-type of application/mathml+xml.

            Assignee:
            David Black
            Reporter:
            David Black
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: