Skip to content
This repository has been archived by the owner on Dec 2, 2024. It is now read-only.

VULNERABILITY: Arbitrary HTML code execution flaw #200

Closed
MikeDev101 opened this issue Dec 14, 2023 · 0 comments
Closed

VULNERABILITY: Arbitrary HTML code execution flaw #200

MikeDev101 opened this issue Dec 14, 2023 · 0 comments
Labels
bug Something isn't working URGENT

Comments

@MikeDev101
Copy link
Contributor

There is a potentially hazardous security vulnerability with the client's markdown parser and/or @ mentions system. This allows arbitrary HTML code to execute, allowing other users to temporarily modify the contents on screen of all currently logged in Meower users, and possibly leading to malicious code execution.

@MikeDev101 MikeDev101 added bug Something isn't working URGENT labels Dec 14, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
bug Something isn't working URGENT
Projects
None yet
Development

No branches or pull requests

2 participants