Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


In this Discussion

Hostbill XSS Vulnerability - Patch Now
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

Hostbill XSS Vulnerability - Patch Now

Received an email from HostingSecList about xss vulnerability present in hostbill application.

"We’ve just released security update for HostBill, as a response to potentially dangerous XSS Vulnerability. Severity depends on server configuration. As we take security very seriously we cannot leave our users at risk."

Patch link: http://blog.hostbillapp.com/2018/10/15/security-advisory-all-hostbill-versions/

Thanks!

@Clouvider

Thanked by 1coreflux

Comments

  • NeoonNeoon Community Contributor, Veteran

    Make sure to deploy CSP header, to prevent further issues.
    CSP last line of defense on the browser side.

    Thanked by 2JackH coreflux
Sign In or Register to comment.