SCADA-LTS / Scada-LTS

Scada-LTS is an Open Source, web-based, multi-platform solution for building your own SCADA (Supervisory Control and Data Acquisition) system.
GNU General Public License v2.0
743 stars 292 forks source link

XSS in Reports names #3050

Closed Patrykb0802 closed 1 day ago

Patrykb0802 commented 1 week ago

Describe the bug If we input an XSS payload into the report name field, it will be executed when the report view is selected.

image