The XSS here is only possible if CSP is disabled. Low impact since CSP is enabled by default in SiteSettings. |
||
|---|---|---|
| .. | ||
| adapters | ||
| components | ||
| controllers | ||
| helpers | ||
| mixins | ||
| models | ||
| routes | ||
| services | ||
| templates | ||
The XSS here is only possible if CSP is disabled. Low impact since CSP is enabled by default in SiteSettings. |
||
|---|---|---|
| .. | ||
| adapters | ||
| components | ||
| controllers | ||
| helpers | ||
| mixins | ||
| models | ||
| routes | ||
| services | ||
| templates | ||