Skip to content

Conversation

@mglont
Copy link

@mglont mglont commented Oct 22, 2018

Versions prior to 1.6 of the Fields plugin are open to stored XSS
atacks. This commit upgrades the dependency in question.

See https://github.com/martinfrancois/CVE-2018-1000529 for more details
and a demo app illustrating the issue.

Versions prior to 1.6 of the Fields plugin are open to stored XSS
atacks. This commit upgrades the dependency in question.

See https://github.com/martinfrancois/CVE-2018-1000529 for more details
and a demo app illustrating the issue.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants