Mike Sandman created TC-225:
-------------------------------

             Summary: Entries in Parameters table are not HTML escaped when 
displayed
                 Key: TC-225
                 URL: https://issues.apache.org/jira/browse/TC-225
             Project: Traffic Control
          Issue Type: Bug
          Components: Traffic Ops
    Affects Versions: 1.7.0
            Reporter: Mike Sandman


The Parameters Table in Traffic Ops displays parameters found in the database. 
When viewing "All Profiles" these parameters are displayed as part of the 
website (i.e. in the HTML) and thus anything in angle brackets (e.g. <tag>) is 
interpreted as valid HTML. 



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

Reply via email to