HomePhorge

Fix cross-site scripting (XSS) vulnerability in setting Content-Type/Content…

Description

Fix cross-site scripting (XSS) vulnerability in setting Content-Type/Content-Disposition for attachment preview/download

Thanks to rehme.infosec for reporting the issues.

Details

Provenance
mollekopfAuthored on Nov 7 2023, 10:53 AM
mollekopfPushed on Nov 8 2023, 5:08 PM
Parents
R113:0546ce4a1e7a: Fix tests
Branches
Unknown
Tags
Unknown
Build Status
Buildable 45643