Details
Description
Problem Statement : Possible Script Execution(XSS Attack) on Add/Sync LDAP users
Reproduction steps :
1) Login to Hue as super user
2) navigate to Manage users page
3) click on Add/Sync LDAP users
4) on the page that appears, give :
<script>alert()</script>
(see image)
the script will execute when you click on Add sync user button below.
the ideal Response has to be :