CSS can be injected into the page via README.md #127777
Unanswered
alperenisa
asked this question in
Profile
Replies: 1 comment
-
To confirm the problem, you can try the following steps: Create a README.md File: Add potentially malicious CSS to a README.md file in a test repository. Test<style> body { background-color: red; } </style>Push to GitHub: Push the file to a GitHub repository and view the rendered README.md on GitHub. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Select Topic Area
Bug
Body
The user here seems to be using the
![resim](https://private-user-images.githubusercontent.com/149863334/337855179-ff368881-0265-41fb-a731-72bf6ceb00b5.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJnaXRodWIuY29tIiwiYXVkIjoicmF3LmdpdGh1YnVzZXJjb250ZW50LmNvbSIsImtleSI6ImtleTUiLCJleHAiOjE3MjAwMjg4ODksIm5iZiI6MTcyMDAyODU4OSwicGF0aCI6Ii8xNDk4NjMzMzQvMzM3ODU1MTc5LWZmMzY4ODgxLTAyNjUtNDFmYi1hNzMxLTcyYmY2Y2ViMDBiNS5wbmc_WC1BbXotQWxnb3JpdGhtPUFXUzQtSE1BQy1TSEEyNTYmWC1BbXotQ3JlZGVudGlhbD1BS0lBVkNPRFlMU0E1M1BRSzRaQSUyRjIwMjQwNzAzJTJGdXMtZWFzdC0xJTJGczMlMkZhd3M0X3JlcXVlc3QmWC1BbXotRGF0ZT0yMDI0MDcwM1QxNzQzMDlaJlgtQW16LUV4cGlyZXM9MzAwJlgtQW16LVNpZ25hdHVyZT0zODBiMDg3NWZmNzZjOWQxYzVmNWMwYmJmZmU3ZDkwODM0YjA4Y2I1NDgxNTk3NzdkOTM5NDRhNzM1ZTFiNWJkJlgtQW16LVNpZ25lZEhlYWRlcnM9aG9zdCZhY3Rvcl9pZD0wJmtleV9pZD0wJnJlcG9faWQ9MCJ9.IRVS5t2Xkp-y-U7wm_meq9w9hp8ZmLlBkizF0lU8l04)
math
module.https://github.com/lustryrose882
Beta Was this translation helpful? Give feedback.
All reactions