-
Bug
-
Resolution: Fixed
-
High (View bug fix roadmap)
-
3.6.2
-
None
-
3.06
-
The 500 page in JIRA lists the request parameters, but does not HTML encode them. This can lead to cross site scripting.
[JRASERVER-10542] Request parameters are not HTML encoded on the 500 page
Minimum Version | New: 3.06 |
Workflow | Original: JAC Bug Workflow v2 [ 2837406 ] | New: JAC Bug Workflow v3 [ 2926595 ] |
Status | Original: Resolved [ 5 ] | New: Closed [ 6 ] |
Workflow | Original: JIRA Bug Workflow w Kanban v7 - Restricted [ 2566157 ] | New: JAC Bug Workflow v2 [ 2837406 ] |
Workflow | Original: JIRA Bug Workflow w Kanban v6 - Restricted [ 1531388 ] | New: JIRA Bug Workflow w Kanban v7 - Restricted [ 2566157 ] |
Labels | New: affects-server |
Workflow | Original: JIRA Bug Workflow w Kanban v6 [ 676599 ] | New: JIRA Bug Workflow w Kanban v6 - Restricted [ 1531388 ] |
Component/s | Original: Web interface [ 10126 ] |
Workflow | Original: JIRA Bug Workflow w Kanban v5 [ 643019 ] | New: JIRA Bug Workflow w Kanban v6 [ 676599 ] |
Workflow | Original: JIRA Bug Workflow w Kanban v5 [ 260678 ] | New: JIRA Bug Workflow w Kanban v6 [ 643019 ] |
Workflow | Original: JIRA Bug Workflow + Quality v4 [ 251812 ] | New: JIRA Bug Workflow w Kanban v5 [ 260678 ] |