Edit Email & Password - fail to verify for XSS in new password
Bug #909310 reported by
Vo Hung Anh
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
DiaDiemAnUong |
In Progress
|
Medium
|
Trinh Minh Duc |
Bug Description
When user change the new password in "Edit Email & Password" function, the user can types the same XSS script (eg. <script>
description: | updated |
description: | updated |
Changed in ddantesting: | |
status: | New → In Progress |
importance: | Undecided → Low |
importance: | Low → Medium |
assignee: | nobody → Trinh Minh Duc (trinhminhduc1810) |
To post a comment you must log in.