[JBoss JIRA] (GTNPORTAL-2918) Create front-end for (oauth) social portlets
by Marek Posolda (JIRA)
[ https://issues.jboss.org/browse/GTNPORTAL-2918?page=com.atlassian.jira.pl... ]
Marek Posolda commented on GTNPORTAL-2918:
------------------------------------------
In case that we don't have any social networks enabled, we should likely display in OrganizationManagementPortlet in tab "Social networks info" some message that they are not any social networks enabled. Message should be localized.
In UIAccountSocial.gtmpl (right top corner) this is already partially covered and it displays message "No Social networks available", but it's currently not localized (would be nice to localize imo).
> Create front-end for (oauth) social portlets
> --------------------------------------------
>
> Key: GTNPORTAL-2918
> URL: https://issues.jboss.org/browse/GTNPORTAL-2918
> Project: GateIn Portal
> Issue Type: Bug
> Security Level: Public(Everyone can see)
> Reporter: Viliam Rockai
> Assignee: Viliam Rockai
>
--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira
12 years, 11 months
[JBoss JIRA] (GTNPORTAL-2921) Groups administration's Add Group got XSS vulnerability with the field Label
by Hai Nguyen (JIRA)
Hai Nguyen created GTNPORTAL-2921:
-------------------------------------
Summary: Groups administration's Add Group got XSS vulnerability with the field Label
Key: GTNPORTAL-2921
URL: https://issues.jboss.org/browse/GTNPORTAL-2921
Project: GateIn Portal
Issue Type: Bug
Security Level: Public (Everyone can see)
Reporter: Hai Nguyen
Assignee: Hai Nguyen
* Steps to reproduce:
# Admin user login to PLF
# goto: Administration>Groups and roles
# add a group with name *aaa*, put this script into the field *Label*
{code}
"/><script>alert("1000");</script><input value="a
{code}
# Logout
# Go back to Administration>Groups and roles
# Click to Edit his profile --> Script executed
--> *it's a bug*
--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira
12 years, 12 months