Details
-
Task
-
Status: Resolved
-
Blocker
-
Resolution: Fixed
-
2.7.4
Description
Special characters should be encoded when displayed in Ambari Views.
If special characters are not encoded, then scripts (<script>alert("xss!")</script>) may be executed due to user input. For example, issues may occur by placing special character in the Display Name field of an Ambari View.
Attachments
Issue Links
- links to