Skip to content
Snippets Groups Projects
Commit f351b050 authored by Julia Hansbrough's avatar Julia Hansbrough Committed by e0d
Browse files

Fixing email link injection bug

Several templates used a variable set by the user (the request host header).  This led to a vulnerability where an attacker could inject their domain name into these templates (i.e., activation emails).  This patch fixes this vulnerability.

LMS-532
parent 9e8a24bf
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment