cerebrate/templates/element/genericElements/IndexTable
iglocska 495c4ee93c
fix: [security] XSS in the generic action template
- a previously assumed internal url can have user input appended via the MISP local tool connector
- requires a compromised connected MISP instance where a malicious administrator modifies the UUIDs of cerebrate relevant objects to JS payloads

- as reported by Dawid Czarcnecki of Zigrin Security
2022-02-20 12:07:06 +01:00
..
Fields fix: [security] XSS in the generic action template 2022-02-20 12:07:06 +01:00
headers.php fix: [genericElement:indexTable] Ignore row selector column 2021-10-20 15:39:37 +02:00
index_table.php new: [genericElement:indexTable] Table actions - WiP 2021-10-20 09:39:12 +02:00
pagination.php fix: [pagination] Fixed ellipsis pagination 2021-03-04 09:00:16 +01:00
pagination_counter.php chg: [restructure] the application 2020-06-22 14:28:17 +02:00
pagination_limiter.php chg: [restructure] the application 2020-06-22 14:28:17 +02:00
pagination_links.php chg: [restructure] the application 2020-06-22 14:28:17 +02:00
row.php new: [genericElement:indexTable] Table actions - WiP 2021-10-20 09:39:12 +02:00