CVE-2024-PENDING A malicious editor could potentially create an edit summary or log summary with links such that a link marker is in an attribute which will then get replaced allowing the content to break out of the attribute leading to an XSS. Bug: T355538 Change-Id: If20a8a95e84bb2f6e132bdda4907e3db6f133a8e |
||
|---|---|---|
| .. | ||
| CommentBatch.php | ||
| CommentFormatter.php | ||
| CommentItem.php | ||
| CommentParser.php | ||
| CommentParserFactory.php | ||
| RevisionCommentBatch.php | ||
| RowCommentFormatter.php | ||
| RowCommentIterator.php | ||
| StringCommentIterator.php | ||