Refactoring: Changed remaining check parameters starting with an 's' to the new rules...
[check_mk.git] / .werks / 2390
blob27b905a905b9b6ceb5e08cd81f154a17965c4b50
1 Title: Fixed possible XSS issue on views
2 Level: 1
3 Component: multisite
4 Class: security
5 Compatible: compat
6 State: unknown
7 Version: 1.2.7i3
8 Date: 1435654030
10 It was possible to use the view_name variable to inject HTML/Javascript
11 code into the status GUI views.