Skip to content

Conversation

j-chmielewski
Copy link
Contributor

This pull request fixes vulnerability from penetration tests done by our security team on 2025-09-02:

Sanitize user-agent string during password reset process.

Partially resolves #1545

@j-chmielewski j-chmielewski changed the base branch from main to dev September 16, 2025 06:25
@j-chmielewski j-chmielewski merged commit e2a1f19 into dev Sep 16, 2025
6 checks passed
@j-chmielewski j-chmielewski deleted the fix-dg25-16 branch September 16, 2025 07:22
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Pentest - DG25-16: HTML Injection - password reset
3 participants