Back to bug 2188630

Who When What Removed Added
Avinash Hanwate 2023-04-21 12:52:49 UTC Summary CVE-2023-1892 sidekiq: Reflected XSS on Sidekiq through multiples endpoints via GET parameter "period" in sidekiq/sidekiq 0 Valid Reported on Apr 3rd 2023 CVE-2023-1892 sidekiq: Reflected XSS on Sidekiq through multiples endpoints via GET parameter "period" in sidekiq/sidekiq
Avinash Hanwate 2023-04-21 12:53:28 UTC Blocks 2188631
Product Security DevOps Team 2023-04-24 15:14:45 UTC Resolution --- NOTABUG
Status NEW CLOSED
Last Closed 2023-04-24 10:27:03 UTC
Resolution NOTABUG ---
Status CLOSED NEW
Keywords Reopened
CC ybuenos
Status NEW CLOSED
Resolution --- NOTABUG
Last Closed 2023-04-24 10:27:03 UTC 2023-04-24 15:14:45 UTC
Paige Jung 2023-07-13 16:42:29 UTC Doc Text A Reflected Cross-site-scripting vulnerability was found in sidekiq. Code can be executed via multiples endpoints in the GET parameter "period".
Flags needinfo?(ybuenos)
Paige Jung 2023-07-13 19:04:20 UTC Flags needinfo?(ybuenos)
Doc Text A Reflected Cross-site-scripting vulnerability was found in sidekiq. Code can be executed via multiples endpoints in the GET parameter "period". A reflected Cross-site Scripting (XSS) vulnerability was found in sidekiq. This issue may allow code to be executed via multiples endpoints in the GET parameter "period".

Back to bug 2188630