Vigilance.fr - Mercurial: Cross Site Scripting via Hgweb CRLF Injection, analyzed on 24/03/2025
May 2025 by Vigilance.fr
An attacker can trigger a Cross Site Scripting of Mercurial, via Hgweb CRLF Injection, in order to run JavaScript code in the context of the web site.
Plus d'information sur : https://vigilance.fr/vulnerability/Mercurial-Cross-Site-Scripting-via-Hgweb-CRLF-Injection-46655