Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Dmitry Ivanov [d1m0ck](https://twitter.com/d1m0ck) reported[*1] a security vulnerability in the Source Integration plugin's search results page, allowing an attacker to inject arbitrary HTML or javascript code (the latter, only if MantisBT's default CSP are disabled). Proper escaping of the permalink resolves the issue. Fixes #205 [*1]: http://openbugbounty.org/incidents/218993/
- Loading branch information