-
Type: Bug
-
Status: Closed (View Workflow)
-
Priority: Minor
-
Resolution: Fixed
-
Affects Version/s: 1.1 Penguins
-
Fix Version/s: 2.0
-
Labels:None
-
Environment:
Windows 7, Yandex.Chrome v. 24
There are no error message when posted empty article or comment
Steps to reproduce
- Go to http://qa.jtalks.org/antarcticle/ and sign in
- Click "Write article"
- Enter <script>alert('aa')</script>
- Click "Post article"
Actual Result: empty article wascreated
Expected Result: script text posted as plain test.
- Discovered while testing
-
ANTARCTICLE-150 <script> text isn't shown in articles and comments
- Closed
- relates to
-
ANTARCTICLE-192 XSS vulnerability in comments
- Closed