rsyslog / loganalyzer

Adiscon LogAnalyzer, a web frontend to log data from the same folks the created rsyslog
Other
75 stars 39 forks source link

login: Fix XSS issue if "Debug Userlogin" is enabled. #77

Closed alorbach closed 3 years ago

alorbach commented 3 years ago

When "Debug Userlogin", the username was within the login fail debug message and vulnerable to XSS attacks. This has been fixed now.