[
https://issues.apache.org/jira/browse/OFBIZ-12249?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Jacques Le Roux updated OFBIZ-12249:
Attachment: Image 006.png
> Unexpected decoding of url encoded textarea data after
[
https://issues.apache.org/jira/browse/OFBIZ-12249?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Jacques Le Roux updated OFBIZ-12249:
Attachment: OFBIZ-12249.patch
> Unexpected decoding of url encoded textarea data after
[
https://issues.apache.org/jira/browse/OFBIZ-12249?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17359183#comment-17359183
]
Jacques Le Roux commented on OFBIZ-12249:
-
Hi Wang,
It was much fun to work on that :)
[
https://issues.apache.org/jira/browse/OFBIZ-11810?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17359319#comment-17359319
]
Nicolas Malin commented on OFBIZ-11810:
---
Thanks for raise this alert, I will check why we have
Xin Wang created OFBIZ-12254:
Summary: XSS vulnerability for ListWorkEfforts form
Key: OFBIZ-12254
URL: https://issues.apache.org/jira/browse/OFBIZ-12254
Project: OFBiz
Issue Type: Bug
[
https://issues.apache.org/jira/browse/OFBIZ-12254?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17359431#comment-17359431
]
Xin Wang commented on OFBIZ-12254:
--
A patch have been attached.
> XSS vulnerability for
[
https://issues.apache.org/jira/browse/OFBIZ-12254?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Xin Wang updated OFBIZ-12254:
-
Attachment: 0001-Fixed-Escaping-description-text-for-hyperlink-OFBIZ-.patch
> XSS vulnerability for
[
https://issues.apache.org/jira/browse/OFBIZ-12249?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17359434#comment-17359434
]
Xin Wang commented on OFBIZ-12249:
--
Hi Jacques,
To make my opinion more clear, I have filed another