As the application allows a valid user to insert java script in the announcement banner which is redirecting to some other site.
Eg: Welcome<script>window.location.href='some other site'</script>
I want to prevent this injection in announcement banner. Need help on this. Version of jira is 7.0 .
Only Jira admin has right to apply any script to the announcement banner.
You can remove jira admin permission for the user you want to restrict.
Thanks,
Sachin
Which is your request exactly?
Want to know if this is possible?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
I want to restrict the script injection in the announcement banner!!
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Do you mean unauthorized users can inject ?
I am not aware of that.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
<\code>alert(сообщение)<code>
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.