Open thannaske opened 2 months ago
Thanks @thannaske Scripts should be banned, do you mind creating a simple reproduction? In my tests it works as expected, mybe I'm missing something in my tests!!
Thanks @thannaske Scripts should be banned, do you mind creating a simple reproduction? In my tests it works as expected, mybe I'm missing something in my tests!!
Got the same result.
It seems like the MDC component is not caring about XSS and is therefore vulnerable against "poisoned" content.
Reproduction