[zope2-tracker] [Bug 142618] Re: error_message & SimpleItem.raise_standardErrorMessage facilitate cross site scripting

Hanno Schlichting hanno at hannosch.eu
Sun Jun 13 12:19:47 EDT 2010


*** This bug is a duplicate of bug 491224 ***
    https://bugs.launchpad.net/bugs/491224

** This bug has been marked a duplicate of bug 491224
   Error page does not sanitize HTML, passes through potentially malicious Javascript

** Visibility changed to: Public

-- 
error_message & SimpleItem.raise_standardErrorMessage facilitate cross site scripting
https://bugs.launchpad.net/bugs/142618
You received this bug notification because you are a member of Zope 2
Developers, which is subscribed to Zope 2.


More information about the zope2-tracker mailing list