跳至内容
菜单
此问题已终结
3808 查看

When i add "><svg onload=alert(12345)><> in any char field or text field. The script execute in Firefox but not in Chrome.

For ex.

When i enter this script in any mail channel name and save it. Then go to discuss menu, click on the mail channel that i have created with script in name. Then click on invite button the script executes. It happen only in firefox.

Here is screenshot :-

形象
丢弃
相关帖文 回复 查看 活动
1
4月 21
1452
0
4月 21
2197
1
11月 20
2256
0
9月 20
2934
2
6月 20
2447