Postorius HTML Injection Flaw Exposes Sensitive Data in Message Moderation
A vulnerability in Postorius, the web interface for GNU Mailman, fails to properly escape HTML in message subject lines when displaying held messages. Attackers could exploit this flaw to inject malicious HTML and potentially access sensitive information.
Leia mais