Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add cross-site scripting checks uploaded .svg assets #510

Merged
merged 1 commit into from
Dec 16, 2021
Merged

Add cross-site scripting checks uploaded .svg assets #510

merged 1 commit into from
Dec 16, 2021

Conversation

vipin-shrivastava
Copy link
Contributor

1. Why is this change necessary?

Image contains XSS payload, For security purpose hacker can take the information.

2. What does this change do, exactly?

Fixed.

3. Please link to the relevant issues (if any).

#494

@papnoisanjeev papnoisanjeev merged commit fa269af into uvdesk:master Dec 16, 2021
@akshaywebkul akshaywebkul changed the title update for .svg contain XSS payload Add cross-site scripting checks uploaded .svg assets Mar 23, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants