[zope2-tracker] [Bug 142618] Re: error_message & SimpleItem.raise_standardErrorMessage facilitate cross site scripting
Hanno Schlichting
hanno at hannosch.eu
Sun Jun 13 12:19:47 EDT 2010
*** This bug is a duplicate of bug 491224 ***
https://bugs.launchpad.net/bugs/491224
** This bug has been marked a duplicate of bug 491224
Error page does not sanitize HTML, passes through potentially malicious Javascript
** Visibility changed to: Public
--
error_message & SimpleItem.raise_standardErrorMessage facilitate cross site scripting
https://bugs.launchpad.net/bugs/142618
You received this bug notification because you are a member of Zope 2
Developers, which is subscribed to Zope 2.
More information about the zope2-tracker
mailing list