Remove ability to add application image

#15 Reported about 1 year ago by Dan Glegg (Project owner)

XSS vuln. And that’s bad. Because session auth is the only way to authorise apps, and we don’t want any ways for api keyholders to steal the user’s sessino.


Discussion and changes

Post a comment
About 1 year ago
Dan Glegg changed status to Completed
About 1 year ago
Dan Glegg upgraded rating to TrivialMinorModerateSeriousSeverity_star_tiny_inactive
About 1 year ago
Dan Glegg assigned this to Dan Glegg
About 1 year ago
Dan Glegg created this

Terms of Service Privacy policy Report a problem with the bugtracker