API Forum

This forum is in read-only mode.
Please refer to our API support in case you have any questions.
We can be reached at api@e-conomic.com
e-conomic API developer forum

Cross site script test - API failed

+1
Hi, I tested to send a java script through API eg. as debtor email and it worked fine :(

I think, you have to handle this vulnerability in your system, before someone can really do some harm to your system.

/Kristian
created Sep 21, 2014 by KVerwold
50% Accept Rate
Q 6 A 3 C 2

2 Answers

0
Oh, thats a good issue you have raised.
answered Sep 23, 2014 by Wisdmlabs
0
Hi Kristian,

Did you do this through our rest api or through our soap api?

I have created a ticket for this in our bug tracker.

Thank you,

Rasmus Beck
answered Oct 14, 2014 by rbb
Visma e-conomic A/S
...