25
0
Fork 0
mirror of https://github.com/hedgedoc/hedgedoc.git synced 2026-06-30 11:35:26 +02:00
HedgeDoc/lib/web/note
Erik Michelson fbd7307f16 fix(gist-export): validate OAuth2 state and redirect URI
The state of the OAuth2 response was not verified.
In theory an attacker could use this to extract the contents of a note.

Co-authored-by: Philip Molares <philip.molares@udo.edu>
Signed-off-by: Erik Michelson <github@erik.michelson.eu>
2026-06-18 23:56:45 +02:00
..
actions.js fix(gist-export): validate OAuth2 state and redirect URI 2026-06-18 23:56:45 +02:00
controller.js feat: option to disable note creation 2024-07-21 11:03:35 +02:00
router.js feat: rate-limiting 2025-02-01 21:12:08 +01:00
slide.js Inline renderPublishSlide 2019-10-27 15:50:24 +01:00
util.js feat: option to disable note creation 2024-07-21 11:03:35 +02:00