Files
Cosmos-Server/client
Hoang Nguyen df0f19bec7 [release] v0.12.2
* Mitigate open redirect vulnerability in login page

Current implementation won't allow full url redirection within local origin, and will allow open redirection with href like "//google.com".
Comparing redirect url's origin with current origin will ensure the two share the same protocol, hostname, and port.

* Update .clabot

Add catmandx to list of contributors for creating pull request
2023-11-09 11:40:26 +00:00
..
2023-11-09 11:40:26 +00:00
2023-03-25 20:15:00 +00:00
2023-03-12 18:17:28 +00:00