>           Reporter: [email protected]

Yet another "security researcher" that failed to notice that if you try
and upload an attachment with MIME type text/html our Bugzilla instances
will always render it as text/plain.

I'd mind less if these folks actually checked if the attack worked and
then apologied for wasting our time when they found it didn't.

I've disabled this idiot's account.

I'll delete the issue shortly.

Mark

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to