You are using an unsupported browser. Please update your browser to the latest version on or before July 31, 2020.
close
Home > Product Release Notes > February 16 2022 Production Release
February 16 2022 Production Release
print icon

Security fixes:

  • Fixed vulnerabilities where 
    • html injection was possible in authentication emails by spoofing IP address header 
    • html injection was possible in agent/visitor transcript emails by spoofing visitor name.
    • Exe files were accepted as attachment during chat due to weak file type validation


Other minor updates:

  • Started showing warnings in the agent chat window and transcripts section for attachments with potentially dangerous file types.
Feedback
0 out of 0 found this helpful

scroll to top icon