Details
-
Bug
-
Resolution: Fixed
-
Medium
-
6.1
-
6.01
-
6
-
Severity 3 - Minor
-
Description
Reproduction:
1. Create custom fields with <script>alert(1)</script> in name and/or description.
2. Go to 'Field Configurations'
3. Click 'Add Field Configuration', enter any text in 'Name'
4. Hit okay and wait for the page to refresh
5. Choose the config you just made -> XSSed