Remove ability to add application image

#15 Reported over 3 years ago by Dan Glegg (Project owner)

XSS vuln. And that’s bad. Because session auth is the only way to authorise apps, and we don’t want any ways for api keyholders to steal the user’s sessino.


Discussion and changes

Post a comment
Over 3 years ago
Dan Glegg changed status to Completed
Over 3 years ago
Dan Glegg upgraded rating to TrivialMinorModerateSeriousSeverity_star_tiny_inactive
Over 3 years ago
Dan Glegg assigned this to Dan Glegg
Over 3 years ago
Dan Glegg created this

Terms of Service Privacy policy Report a problem with the bugtracker