You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Other instant messaging apps and most email clients display a warning/confirmation pop-up when clicking on this kind of links, clearly displaying the actual target to the user and letting them choose whether to open it or not.
Version information
Platform: web and desktop
Version: 1.5.12
Riot on mobile might be affected too.
The text was updated successfully, but these errors were encountered:
Description
It's possible to use Markdown/HTML formatting to hide the real target of a link.
This could be used in phishing attacks.
Steps to reproduce
is rendered as:
Mitigation
Other instant messaging apps and most email clients display a warning/confirmation pop-up when clicking on this kind of links, clearly displaying the actual target to the user and letting them choose whether to open it or not.
Version information
Riot on mobile might be affected too.
The text was updated successfully, but these errors were encountered: