|
|
|
|
|
by LukasReschke
3838 days ago
|
|
So, if we ignore all lower and medium severity ones we're basically only left with CVE-2015-2213 which requires authentication. Also XSS is barely something one can blame PHP for. That's pretty low number. For the record: ownCloud protects you against XSS using Content-Security-Policy. |
|