Thanks for the report! The code looks pretty bad, yes. Would you mind sharing the proof-of-concept script? (and do you mind me sharing with vendor-sec, even I mark it as "private"?) I can delete the script from this bug report before making the bug public after the issues have been fixed.
Thanks for the report! The code looks pretty bad, yes. Would you mind sharing the proof-of-concept script? (and do you mind me sharing with vendor-sec, even I mark it as "private"?) I can delete the script from this bug report before making the bug public after the issues have been fixed.