CSS can be injected into the page via README.md #127777
Unanswered
alperenisa
asked this question in
Profile
Replies: 1 comment
-
To confirm the problem, you can try the following steps: Create a README.md File: Add potentially malicious CSS to a README.md file in a test repository. Test<style> body { background-color: red; } </style>Push to GitHub: Push the file to a GitHub repository and view the rendered README.md on GitHub. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Select Topic Area
Bug
Body
The user here seems to be using the
![resim](https://private-user-images.githubusercontent.com/149863334/337855179-ff368881-0265-41fb-a731-72bf6ceb00b5.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJnaXRodWIuY29tIiwiYXVkIjoicmF3LmdpdGh1YnVzZXJjb250ZW50LmNvbSIsImtleSI6ImtleTUiLCJleHAiOjE3MTk3NjE3MzAsIm5iZiI6MTcxOTc2MTQzMCwicGF0aCI6Ii8xNDk4NjMzMzQvMzM3ODU1MTc5LWZmMzY4ODgxLTAyNjUtNDFmYi1hNzMxLTcyYmY2Y2ViMDBiNS5wbmc_WC1BbXotQWxnb3JpdGhtPUFXUzQtSE1BQy1TSEEyNTYmWC1BbXotQ3JlZGVudGlhbD1BS0lBVkNPRFlMU0E1M1BRSzRaQSUyRjIwMjQwNjMwJTJGdXMtZWFzdC0xJTJGczMlMkZhd3M0X3JlcXVlc3QmWC1BbXotRGF0ZT0yMDI0MDYzMFQxNTMwMzBaJlgtQW16LUV4cGlyZXM9MzAwJlgtQW16LVNpZ25hdHVyZT0xNmY3NWZiNTFlZTNmODVmZDc5OWViMTVlZjZhODUyYjI3ZTQ2ZTZhNjY1OWE5NjkyYWYwZTAzMWMzMWY5MmM2JlgtQW16LVNpZ25lZEhlYWRlcnM9aG9zdCZhY3Rvcl9pZD0wJmtleV9pZD0wJnJlcG9faWQ9MCJ9.XxQ-ted01KBPy-OYri3wr3BWPzQTohKQl8N2ml1WSN8)
math
module.https://github.com/lustryrose882
Beta Was this translation helpful? Give feedback.
All reactions