on 04-02-2019 1:59 PM
In order to fix a security vulnerability Unsafe Use Of Target blank when using the "target" attribute, "rel" attribute should also be set as “noopener noreferrer”. Following two instances does not follow above security guidelines:
Can we expect these to be fixed in future release?
Sorry I meant up date this post:
191930 / 2019 Crystal Report for visual studio 2017 - 13.0.24 - Unsafe Use Of Target blank
2777152 - Crystal Report for visual studio uses "Unsafe Use Of Target blank" tag in the WEB form viewers
It's been fixed and will be in the next patch SP 25 due out in early May.
Don
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Don,
Do you have any update? We require an immediate resolution to close this vulnerability at our end.
Thanks,
Binod
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Binod,
I'm checking with R&D on this subject.
We'll see what they have to say about it...
Thanks for reporting it to us.
Don
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
89 | |
10 | |
10 | |
9 | |
6 | |
6 | |
6 | |
5 | |
4 | |
3 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.