New issue
Advanced search Search tips

Issue 596327 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner: ----
Closed: Mar 2016
EstimatedDays: ----
NextAction: ----
OS: Windows
Pri: 2
Type: Bug-Security

Restricted
  • Only users with SecurityTeam permission may make changes.



Sign in to add a comment

we are testing XSS Flaws

Reported by ashish29...@gmail.com, Mar 20 2016

Issue description

UserAgent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.87 Safari/537.36

Steps to reproduce the problem:
1. testing
2. XSS
3. Flaws

What is the expected behavior?
test xss

What went wrong?
test xss flaws 

<img src=x onerror="alert('Pop-up window via stored XSS');"

Did this work before? N/A 

Chrome version: 49.0.2623.87  Channel: stable
OS Version: 6.1 (Windows 7, Windows Server 2008 R2)
Flash Version: Shockwave Flash 21.0 r0
 

Comment 1 Deleted

Comment 2 Deleted

Comment 3 Deleted

Comment 4 Deleted

Comment 5 by tsepez@chromium.org, Mar 20 2016

Labels: Restrict-EditIssue-SecurityTeam
Stop.  This is not your playground.

Comment 6 by mea...@chromium.org, Mar 20 2016

Status: WontFix (was: Unconfirmed)
@ tsepez@chromium.org


Yes, i am really sorry after submitting this issue i realize i do wrong.
Project Member

Comment 8 by sheriffbot@chromium.org, Jun 27 2016

Labels: -Restrict-View-SecurityTeam
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Project Member

Comment 9 by sheriffbot@chromium.org, Oct 1 2016

This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Project Member

Comment 10 by sheriffbot@chromium.org, Oct 2 2016

This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Labels: allpublic

Sign in to add a comment