Penar Musaraj 6e04120e71 SECURITY: XSS when oneboxing user profile location field
The XSS here is only possible if CSP is disabled. Low impact since CSP is enabled by default in SiteSettings.
2019-09-17 16:36:53 -04:00
..
2019-06-17 20:07:19 -04:00
2019-05-07 08:39:45 -04:00