No edit summary |
No edit summary |
||
Line 11: | Line 11: | ||
|CVE pending | |CVE pending | ||
|JavaScript in search field is reflected back to the browser. | |JavaScript in search field is reflected back to the browser. | ||
|- | |||
|[[Security:Security Advisories/BSSA-2022-02|BSSA-2022-02]] | |||
|2022-04-25 | |||
|XSS attack vector on regular pages | |||
|CVE pending | |||
|Arbitrary HTML injection through the 'title' parameter | |||
|} | |} |
Revision as of 08:20, 26 April 2022
Release name | Release date | Title | References | Summary |
---|---|---|---|---|
BSSA-2022-01 | 2022-01-31 | XSS attack vector in Search Center | CVE pending | JavaScript in search field is reflected back to the browser. |
BSSA-2022-02 | 2022-04-25 | XSS attack vector on regular pages | CVE pending | Arbitrary HTML injection through the 'title' parameter |