Solved
JavaScript redirects security issue - how do I do this correctly?
My web developer flagged this to me and I have never seen this from MKTO redirects. Anyone else experience this or have a solution? MKTO support wasn't very helpful on this one 😞
"Last week the security team flagged a couple of redirects associated with Marketo that can be escalated to XSS attacks."
"Last week the security team flagged a couple of redirects associated with Marketo that can be escalated to XSS attacks."
erp.financialforce. com/redirect?url=https://www. google.com
backoffice. financialforce.com/app/ redirect?url=https://www. google.com
backoffice. financialforce.com/redirect? url=https://google.com
erp.financialforce. com/redirect#?url=https://www. google.com
backoffice.
backoffice.
erp.financialforce.