TAXIIProject / yeti

YETI is a TAXII implementation
BSD 3-Clause "New" or "Revised" License
46 stars 19 forks source link

XSS Attack Vector in Certificate Model Admin #33

Closed MarkDavidson closed 11 years ago

MarkDavidson commented 11 years ago

Maliciously crafted certificates can contain XSS attacks. The Model Admin should properly escape values from certificates.