Embed - Moderately critical - Cross Site Scripting - SA-CONTRIB-2022-042

Contributors (3)

recrit, Shashwat Purav, mstrelan

Changelog

Issues: 3 issues resolved.

Changes since 8.x-1.4:

Security

  • Add CSRF protection for the embed preview route.

Bug

VCS Label
8.x-1.5
Core compatibility
Release type
Short description
SA-CONTRIB-2022-041 and bug fixes
Packaged Git sha1
89b249e4da8f5b39fdfa3e97960107c850427469
Release files
ff4800860802db30bf1ed6770e785ddc
Release file SHA-1 hash
d05013c1511719fdb884fdb70cdfb90f00540af9
Release file SHA-256 hash
76da6b8d093bddd0d3f2bd8313b3fdf4d39442c9c58555254881c80848be1bb3
945a2bcb2c38700285c9f420c4c3e8c9
Release file SHA-1 hash
88a447329d16988459e82392443e96d441d651b2
Release file SHA-256 hash
0db62c5af8f398ea19bbe44e9793b7db611a80832e38ebeb531eb25b7a81911f