6.0.0-RC7
6/23/26

[#9240] XSS: Mailbox name not encoded properly
Summary XSS: Mailbox name not encoded properly
Queue DIMP
Queue Version FRAMEWORK_3
Type Bug
State Resolved
Priority 3. High
Owners slusarz (at) horde (dot) org
Requester slusarz (at) horde (dot) org
Created 9/8/10 (5767 days ago)
Due
Updated 9/8/10 (5767 days ago)
Assigned
Resolved 9/8/10 (5767 days ago)
Github Issue Link
Github Pull Request
Milestone 1.1.5
Patch No

History
349 Michael Slusarz State ⇒ Resolved
 
564 Michael Slusarz Comment #2 (Private)
[Hidden]
14 Michael Slusarz Comment #1
Priority ⇒ 3. High
Patch ⇒ No
Milestone ⇒ 1.1.5
Assigned to Michael Slusarz
Queue ⇒ DIMP
Summary ⇒ XSS: Mailbox name not encoded properly
Type ⇒ Bug
State ⇒ Assigned
Reply to this comment
A URL specific to the Horde system can be used to perform an XSS attack.

Saved Queries