Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

Security vulnerability in javascript_tabs.jsp

재웅 최 August 12, 2020

HI

During a security check to introduce Crowd to the company, "var totalTabs of javascript_tabs.jsp ='<%= request.getParameter("totalTabs") %>';" A security vulnerability was pointed out in the phrase. I will ask you what role this part does and if it can be changed.

What emerged as a security vulnerability was cross-site scripting.

 

Thank you

1 answer

1 accepted

1 vote
Answer accepted
Nic Brough -Adaptavist-
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
August 15, 2020

That is trying to get a list of tabs.  It does not appear to have any security problems.

재웅 최 August 19, 2020

thank you

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events