renlok / WeBid

The official WeBid github fork
http://www.webidsupport.com
114 stars 125 forks source link

Advisory from Netsparker - Webid 1.2.2 - Reflected and Blind XSSes #522

Closed DanielBishtawi closed 5 years ago

DanielBishtawi commented 5 years ago

Hello,

While testing the Netsparker web application security scanner we identified Reflected XSS and Blind XSS vulnerabilities in Webid. Can you please advise whom shall we contact to disclose the vulnerability details so it can be fixed?

Please email me at daniel@netsparker.com for the technical details.

Looking forward to hearing from you.

Regards,

Daniel Bishtawi Marketing Administrator | Netsparker Web Application Security Scanner

MESWEB commented 5 years ago

@DanielBishtawi Can U show us more info here?

DanielBishtawi commented 5 years ago

@renlok Would you like us to disclose the technical details here? Or disclose the technical details via email?

renlok commented 5 years ago

I'll send you an email