Report: a Vulnerabilities in Blender website! #41540
Labels
No Label
legacy module
Rendering & Cycles
legacy module
User Interface
legacy project
Cycles
legacy project
Documentation
legacy project
Infrastructure: blender.org
legacy project
Infrastructure: Blender Web Assets
legacy project
Infrastructure: Websites
legacy project
User Interface
Priority
High
Priority
Low
Priority
Normal
Priority
Unbreak Now!
Status
Archived
Status
Confirmed
Status
Duplicate
Status
Needs Triage
Status
Resolved
Type
Bug
Type
Design
Type
Known Issue
Type
Report
Type
To Do
No Milestone
No project
No Assignees
2 Participants
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: infrastructure/blender-org#41540
Loading…
Reference in New Issue
Block a user
No description provided.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
System Information
Operating system and graphics card
Blender Version
Broken: (example: 2.69.7 4b206af, see splash screen)
Worked: (optional)
Short description of error
Exact steps for others to reproduce the error
Based on a (as simple as possible) attached .blend file with minimum amount of steps
Hi,
I'm Koutrouss & I'm a security Ressearcher,
I wanna inform you that I did found a xss Vulnerability in your
website 'Blender'
So if u are aintersting about that, Just reply to me, & I will be very
happy to give you all the details you will need them
& Out of curiosity; I am just wondering when u will fix this bug, & if
there is any possiblity for me to get a reward ofr that, even if It's
a small reward
or aknowledgment of my name as a reporter a bug in your website
waiting ur reply :)
Sincerely,
Koutrouss Naddara
Changed status to: 'Open'
Added subscriber: @koutrouss
Added subscribers: @fsiddi, @pablovazquez
Changed status from 'Open' to: 'Archived'
Please do not report security issues on the tracker, but rather take direct private contact with Blender foundation (contacts are listed on the main site).