Victor Derho created LOGBACK-1259: ------------------------------------- Summary: HIGH Flaw, XSS Cross Site Scripting Flaw in logback-core.jar Key: LOGBACK-1259 URL: https://jira.qos.ch/browse/LOGBACK-1259 Project: logback Issue Type: Bug Affects Versions: 1.1.10, 1.1.9, 1.1.7 Reporter: Victor Derho Assignee: Logback dev list Priority: Critical
While verifying the code with VERACODE a high flaw issue in logback-core.jar occuring, VERACODE not passed due high security flaw, XSS (Cross Site Scripting) in ViewStatusMessageServletBase.java : 77 Module: logback-core.jar -- This message was sent by Atlassian JIRA (v7.3.1#73012) _______________________________________________ logback-dev mailing list logback-dev@qos.ch http://mailman.qos.ch/mailman/listinfo/logback-dev