IBM / page-lab

PageLab enables web performance, accessibility, SEO, etc testing at scale.
Apache License 2.0
19 stars 10 forks source link

Cross-Site Scripting: Reflected #85

Open QiAnXinCodeSafe opened 4 years ago

QiAnXinCodeSafe commented 4 years ago

https://github.com/IBM/page-lab/blob/dab2a0748f6fdf83c3e19050549330e26404dd87/admin/pageaudit/report/views.py#L197 https://github.com/IBM/page-lab/blob/dab2a0748f6fdf83c3e19050549330e26404dd87/admin/pageaudit/report/views.py#L217

Sending unvalidated data to a web browser can result in the browser executing malicious code.