File tree Expand file tree Collapse file tree 2 files changed +3
-1
lines changed Expand file tree Collapse file tree 2 files changed +3
-1
lines changed Original file line number Diff line number Diff line change 4949- Fix another XSS issue2550817. Note that the code that triggers that
5050 particular bug is no longer in roundup core. But the change to the
5151 templates we suggest is a *lot* safer as it always escapes the error
52- and ok messages now.
52+ and ok messages now. Thanks to Thibault Fevry for the original
53+ bug-report.
5354 If you are upgrading: you *MUST* read doc/upgrading.txt and do the
5455 necessary changes to your templates, the escaping now happens in the
5556 template and not in the roundup code. So if you don't make the
Original file line number Diff line number Diff line change @@ -43,6 +43,7 @@ Andrew Eland,
4343Jeff Epler,
4444Tom Epperly,
4545Tamer Fahmy,
46+ Thibault Févry
4647Vickenty Fesunov,
4748Hernan Martinez Foffani,
4849Stuart D. Gathman,
You can’t perform that action at this time.
0 commit comments