Out of Office Assistant
Breadcrumbs

OOO 3.1.7 Release Notes


Bug Fix

XSS Vulnerability for response returning JQL entered

When returning error on PUT calls to store user exclusion filters, the response returned user input text without escaping.


Content Type returned

Example

Before

text/html

ooo_xss_html_error.png


After

text/plain

ooo_xss_text_fix.png



Issues

Key Summary T P Status Resolution Data cannot be retrieved due to an unexpected error. View these issues in Jira