Files
discourse/lib
Penar Musaraj 3debdc8131 SECURITY: XSS when oneboxing user profile location field
The XSS here is only possible if CSP is disabled. Low impact since CSP is enabled by default in SiteSettings.
2019-09-17 16:12:50 -04:00
..
2019-08-30 10:54:19 +01:00
2019-08-07 16:39:58 +05:30
2014-03-11 03:18:57 -04:00
2019-04-29 16:41:35 +08:00
2019-05-22 17:39:44 +03:00
2019-06-05 11:29:27 +10:00
2019-09-06 16:08:03 -04:00