-
-
Notifications
You must be signed in to change notification settings - Fork 6.2k
Closed
Labels
topic/securitySomething leaks user information or is otherwise vulnerable. Should be fixed!Something leaks user information or is otherwise vulnerable. Should be fixed!
Description
- Gitea version (or commit ref): release 1.6.1
- Git version: 2.11.0
- Operating system: Debian 9.6
- Database (use
[x]):- PostgreSQL
- MySQL
- MSSQL
- SQLite
- Can you reproduce the bug at https://try.gitea.io:
- Yes, at https://try.gitea.io/Simia_/test-repository/issues/1
- No
- Not relevant
- Log gist:
Description
When adding an issue with an HTML tag in the title, said HTML doesn't seem to be escaped.
In this example, the <select> tag in the title is displayed as an actual <select>
Metadata
Metadata
Assignees
Labels
topic/securitySomething leaks user information or is otherwise vulnerable. Should be fixed!Something leaks user information or is otherwise vulnerable. Should be fixed!
