Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

fix xss #495

Open
wants to merge 1 commit into
base: main
Choose a base branch
from
Open

fix xss #495

wants to merge 1 commit into from

Conversation

Webb-L
Copy link

@Webb-L Webb-L commented May 17, 2024

Vulnerability description:

quill 1.3.7 has xss vulnerability

Exploit:

<quill-editor content="<h1>----</h1><img src=x onerror='alert(1)'/><h1>----</h1>" />

image

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant