[wp-trac] [WordPress Trac] #26350: <a href="&#106; avascript:alert('Successful XSS')">Click this link!</a> (was: !important audit)

WordPress Trac noreply at wordpress.org
Mon Mar 16 16:32:51 UTC 2020


#26350: <a href="javascript:alert('Successful XSS')">Click this link!</a>
----------------------------+-----------------------------------
 Reporter:  azaozz          |       Owner:  (none)
     Type:  defect (bug)    |      Status:  closed
 Priority:  high            |   Milestone:  5.5
Component:  Administration  |     Version:  3.8
 Severity:  major           |  Resolution:  invalid
 Keywords:                  |     Focuses:  ui, css, performance
----------------------------+-----------------------------------
Changes (by 01ahmd):

 * keywords:  2nd-opinion =>
 * status:  new => closed
 * resolution:   => invalid


Comment:

 <a href="javascript:alert('Successful XSS')">Click this link!</a>

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/26350#comment:20>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list