Page 1 of 1

Firefox detects cross-site-scripting attack from Mageia.org

PostPosted: Sep 13th, '19, 15:48
by marchugo
Hi,

In the new version of Firefox that I installed today, NoScript gave an XXS warning: it detected a potential Cross-Site-Scripting attack, leading to http://www.mageia.org:



NoScript detected a potential Cross-Site Scripting attack

from file:///usr/share/indexhtml/index.html to https://www.mageia.org.

Suspicious data:

(URL) https://www.mageia.org/community/?p=ven ... fault&l=en


Do I have to worry, or is NoScript maybe too carefull?

Regards,

Marc.

Re: Firefox detects cross-site-scripting attack from Mageia.

PostPosted: Sep 13th, '19, 16:31
by doktor5000
Well, that is the default bookmark to open the Mageia homepage. What do you want to worry about there in particular ?
It's probably regarded as XSS warning because it opens the link from file:///usr/share/indexhtml/index.html that opens the actual homepage at https://www.mageia.org/... - I'd add that as an exception in Noscript.