Quantcast
Channel: SVNForum.org - Subversion Forum - uberSVN Help and Support
Viewing all articles
Browse latest Browse all 111

Comment on Posts in Dashboard Accepts HTML Code

$
0
0
I tested inputting the following line in a comment on a post in the dashboard.

Hello <script> alert("Hi, there!"); </script>

The script got executed. An alert box was shown.
An <input> tag can also be entered.

Is there an option to prevent users from doing this?

Preecha.

Viewing all articles
Browse latest Browse all 111

Trending Articles