Mike Sandman created TC-225:
-------------------------------
Summary: Entries in Parameters table are not HTML escaped when
displayed
Key: TC-225
URL: https://issues.apache.org/jira/browse/TC-225
Project: Traffic Control
Issue Type: Bug
Components: Traffic Ops
Affects Versions: 1.7.0
Reporter: Mike Sandman
The Parameters Table in Traffic Ops displays parameters found in the database.
When viewing "All Profiles" these parameters are displayed as part of the
website (i.e. in the HTML) and thus anything in angle brackets (e.g. <tag>) is
interpreted as valid HTML.
--
This message was sent by Atlassian JIRA
(v6.3.15#6346)