[logback-dev] [JIRA] (LOGBACK-1259) HIGH Flaw, XSS Cross Site Scripting Flaw in logback-core.jar

QOS.CH (JIRA) noreply-jira at qos.ch
Mon Feb 13 15:24:00 CET 2017


Victor Derho created LOGBACK-1259:
-------------------------------------

             Summary: HIGH Flaw, XSS Cross Site Scripting Flaw in logback-core.jar
                 Key: LOGBACK-1259
                 URL: https://jira.qos.ch/browse/LOGBACK-1259
             Project: logback
          Issue Type: Bug
    Affects Versions: 1.1.10, 1.1.9, 1.1.7
            Reporter: Victor Derho
            Assignee: Logback dev list
            Priority: Critical


While verifying the code with VERACODE a high flaw issue in logback-core.jar occuring, VERACODE not passed due high security flaw, XSS (Cross Site Scripting) in

ViewStatusMessageServletBase.java : 77

Module: logback-core.jar



--
This message was sent by Atlassian JIRA
(v7.3.1#73012)


More information about the logback-dev mailing list