MISP/app/View/Elements/genericElements/SingleViews/Fields
iglocska 60c85b80e3
fix: [security] XSS in cerebrate view
- low probability XSS in the cerebrate view's URL field
- a malicious administrator could set a javascript: url
- another administrator would have to click the suspicious looking URL to be affected

- As reported by Dawid Czarnecki of Zigrin Security on behalf of the Luxembourg Army
2022-04-18 00:58:31 +02:00
..
alignmentField.ctp new: [SingleView factories] added 2020-10-20 01:47:17 +02:00
authkeyField.ctp chg: [UI] Always use auth key with space in UI 2020-11-19 13:19:43 +01:00
booleanField.ctp chg: [boolean] field added to the single view fields 2020-11-11 10:49:21 +01:00
customField.ctp new: [authkeys] Allowed IPs 2021-03-03 09:23:07 +01:00
dateField.ctp new: [SingleView factories] added 2020-10-20 01:47:17 +02:00
datetimeField.ctp chg: [UI] Use TimeHelper for datetime formatting 2021-02-09 15:48:36 +01:00
delegationRequestField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00
distributionField.ctp fix: [event view] distribution field fixed 2022-03-17 14:38:06 +01:00
elementField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00
expirationField.ctp fix: [UI] Days to expire count 2020-12-17 13:50:25 +01:00
extendedByField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00
extendsField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00
genericField.ctp fix: [security] XSS in cerebrate view 2022-04-18 00:58:31 +02:00
jsonField.ctp new: [json field] added to single view factory 2022-03-02 02:03:38 +01:00
linksField.ctp add search bar, fix col widths, show ref field as links 2021-04-21 15:11:26 +02:00
mappingField.ctp new: [indextable] scaffolding added along with a list of improvements 2020-11-11 10:42:41 +01:00
modelField.ctp fix: [singleview factory] modelField element now handles empty data fields gracefully 2022-03-02 02:05:02 +01:00
orgField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00
protectedEventField.ctp chg: [UI] Open modal without onclick 2022-03-20 14:21:32 +01:00
sparklineField.ctp new: [internal] Show auth key usage in key view page 2020-12-17 13:49:32 +01:00
tagsField.ctp chg: migrate /templates/view/:id to view factory 2021-07-22 11:07:32 +02:00
threatLevelField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00
uuidField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00
warningsField.ctp chg: [event view] rework 2022-03-06 23:51:25 +01:00