Comment 2 for bug 1463698

Revision history for this message
Amit (amitghadigaonkar0) wrote :

I've accessed Swift through Horizon Dashboard..[2.14.2]

Steps to Reproduce : 1. Login to Horizon Portal.
2.Create a Container through Object Store.
3.Make the Container as Public.
4.Now Upload a image file having XSS payload.[XSS payload into image metadata]
5.Browse the Public URL of the Container and access the uploaded file.