open navigation menu
BugBusters
BugBusters
Reports
Contributors
Sites
Leaderboard
How It Works
Sign In | Sign Up
🌞
New release soon: Transforming reports into a war-room for both community topics and bug reports
Home
Reports
Search input doesn't sanitize script code
View
Back to reports
Title
Status
Open
Le Monde Informatique
https://lemondeinformatique.fr
Category
New
url
https://
Impact
SingleUser
AllUsers
SpecificBrowsersDevices
SiteWide
Impact
🌎 All users
Severity
Critical
High
Medium
Low
Severity
High
Tags
Visual Problem
Accessibility (a11y) Issue
Data Issue
Performance Issue
Security Vulnerability
Functional Bug
Usability Issue
Compatibility Issue
Content Issue
Tags
Select tags
Description
Type <script>alert('coucou')</script> in the search input and the code will be executed...
Suggestions
Implement input sanitization or use a component that ships it.
// type something helpful here
Language
Loading...
All comments (0)
Leave a Comment
Cancel
Submit