Security:Security Advisories: Difference between revisions

No edit summary
No edit summary
Line 11: Line 11:
|CVE pending
|CVE pending
|JavaScript in search field is reflected back to the browser.
|JavaScript in search field is reflected back to the browser.
|-
|[[Security:Security Advisories/BSSA-2022-02|BSSA-2022-02]]
|2022-04-25
|XSS attack vector on regular pages
|CVE pending
|Arbitrary HTML injection through the 'title' parameter
|}
|}

Revision as of 08:20, 26 April 2022

Release name Release date Title References Summary
BSSA-2022-01 2022-01-31 XSS attack vector in Search Center CVE pending JavaScript in search field is reflected back to the browser.
BSSA-2022-02 2022-04-25 XSS attack vector on regular pages CVE pending Arbitrary HTML injection through the 'title' parameter