Werk #12564: Fix possible stored XSS issue when uploading backup keys

Component Setup
Title Fix possible stored XSS issue when uploading backup keys
Date Apr 26, 2021
Level Trivial Change
Class Security Fix
Compatibility Compatible - no manual interaction needed
Checkmk versions & editions
2.1.0b1 Checkmk Raw (CRE), Checkmk Enterprise (CEE), Checkmk MSP (CME)
2.0.0p4 Checkmk Raw (CRE), Checkmk Enterprise (CEE), Checkmk MSP (CME)

Uploading backup keys could trigger a XSS issue which could lead to execution of arbitrary javascript code in the context of the user currently accessing the setup GUI.

To the list of all Werks