XSS in admin/ViewIssueFields.jspa

XMLWordPrintable

    • 6.01
    • 6
    • Severity 3 - Minor

      Reproduction:
      1. Create custom fields with <script>alert(1)</script> in name and/or description.
      2. Go to 'Field Configurations'
      3. Click 'Add Field Configuration', enter any text in 'Name'
      4. Hit okay and wait for the page to refresh
      5. Choose the config you just made -> XSSed

              Assignee:
              Ilya Zinoviev (Inactive)
              Reporter:
              Ashley Blackmore (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated:
                Resolved: