[Owncloud] App Mail Notify approve

Bernhard Posselt nukeawhale at gmail.com
Wed Jul 24 11:35:13 UTC 2013


Line 299 and 300 in lib/mailing.php contain XSS. Please either lookup 
how to prevent XSS in PHP or even better: consider splitting your logic 
and view by using templates (oc templates provide p() which does all the 
escaping for you)

On 07/24/2013 12:58 PM, Jascha Burmeister wrote:
> Hi,
>
> Any dev there who can approve my app?
>
> http://apps.owncloud.com/content/show.php/Mail+Notification?content=155982
>
> Thank you
>
> telcy
>
> Jascha Burmeister
>
>
> _______________________________________________
> Owncloud mailing list
> Owncloud at kde.org
> https://mail.kde.org/mailman/listinfo/owncloud

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.kde.org/pipermail/owncloud/attachments/20130724/480c79c5/attachment.html>


More information about the Owncloud mailing list