We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Unprivileged user can perform XSS attacks on other users by constructing malicious team names.
This problem has been fixed in v0.20.1.
v0.20.1
See 31e775b, which disable markdown rendering for notices triggered by submitting a flag.
Impact
Unprivileged user can perform XSS attacks on other users by constructing malicious team names.
Patches
This problem has been fixed in
v0.20.1
.Workarounds & References
See 31e775b, which disable markdown rendering for notices triggered by submitting a flag.