cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

Can XSS filtering be applied to Backoffice CSV imports?

smuttaki
Member
0 Kudos
435

Hi ,

Currently we are checking on Cross-site scripting protection filter on backoffice and smartedit. It works with normal input fields. But when I try to insert scripts in csv and use it to upload a product , the script gets saved. This is definetely a potential vulnerability which we want to avoid.

Any ideas how to achieve this or is it planned in any future hybris releases??

thanks , Shabana

Accepted Solutions (0)

Answers (0)