[Vtigercrm-developers] XSS Vulnerability Vtiger

Henry Cumbicus Rivera hcumbicusr at gmail.com
Fri Apr 28 03:58:27 GMT 2023


Hi,
*Has the XSS vulnerability been resolved?* (ref:
https://github.com/EmreOvunc/Vtiger-CRM-Vulnerabilities)

I have tested with version 7.2 and 7.5, and the issue persists in both.

I checked the GitLab repository but I see that the applied solution is for
fields in the templates. (ref:
https://code.vtiger.com/vtiger/vtigercrm/-/commit/623b138f3d46318daadd0ee54b404d031a33dd94
)


[image: 1.jpeg]



[image: 2.jpeg]





-- 

---------------------------------------------------------------
Ing. Henry C.
Tel.: +51 956727976
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.vtigercrm.com/pipermail/vtigercrm-developers/attachments/20230427/23965bd2/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 1.jpeg
Type: image/jpeg
Size: 32115 bytes
Desc: not available
URL: <http://lists.vtigercrm.com/pipermail/vtigercrm-developers/attachments/20230427/23965bd2/attachment-0002.jpeg>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 2.jpeg
Type: image/jpeg
Size: 43063 bytes
Desc: not available
URL: <http://lists.vtigercrm.com/pipermail/vtigercrm-developers/attachments/20230427/23965bd2/attachment-0003.jpeg>


More information about the vtigercrm-developers mailing list