[Users] Another XSS issue

David Touitou david at network-studio.com
Fri Jan 12 13:48:18 CET 2018


Hi,

> I'm pretty sure 8.6 is affected as well though I didn't look.

I looked on one of my servers.
It is affected, considering the commit you linked to.

Once again, Zimbra's owner (now it's Synacor) gets me speechless...

David




More information about the Users mailing list