View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0005710 | SOGo | GUI | public | 2023-03-13 13:43 | 2023-10-09 08:01 |
Reporter | hexmode | Assigned To | |||
Priority | normal | Severity | major | Reproducibility | have not tried |
Status | new | Resolution | open | ||
Platform | [Server] Linux | OS | Debian | OS Version | 8 (Jessie) |
Product Version | 5.8.0 | ||||
Summary | 0005710: HTML in the subject line is not escaped and displayed | ||||
Description | I recceived an email today with <button class="md-no-style md-button md-ink-ripple" type="button" ng-transclude="" ng-click="mailbox.selectMessage(currentMessage)" aria-label="[Wikitech-l] Re: VisualEditor inserting In another mail reader, the subject was properly displayed as [Wikitech-l] Re: VisualEditor inserting | ||||
Steps To Reproduce | Send an email with "<br />" in the subject line. | ||||
Additional Information | SOGo should escape the subject line so that it can be used as an attribute to an HTML element. | ||||
Tags | No tags attached. | ||||