[support] Lightbox2 Cross Site Scripting

Bharani Kumar bharanikumariyerphp at gmail.com
Thu Aug 21 09:06:34 UTC 2014


Hi Drupal folk,

      can you please advise the solution for the Cross Site Scripting
problem.
OWASP ZAP Testing Tool produced XSS error in the following location.

URL: example.com/sites/javascript:alert(1);/modules/lightbox2/js
<http://example.com/sites/javascript:alert%281%29;/modules/lightbox2/js>
Parameter: all

Thanks in advance for your help


Regards
Bharani
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.drupal.org/pipermail/support/attachments/20140821/5e0d0537/attachment.html 


More information about the support mailing list