http://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=13618
Joonas Kylmälä <[email protected]> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |[email protected] --- Comment #52 from Joonas Kylmälä <[email protected]> --- (In reply to Joonas Kylmälä from comment #51) > Created attachment 42054 [details] [review] > Bug 13618: Use Template::Stash::AutoEscaping to use the html filter > > Test plan done and worked. I deleted the commits from 13609, and then > applied this and it also solved the xss vulnerability. > > Signed-off-by: Joonas Kylmälä <[email protected]> Thought it worked, but now noticed it broked the html in /cgi-bin/koha/opac-tags.pl?mine=1 (my tags in opac). Under the title column it only shows html as plain text. -- You are receiving this mail because: You are watching all bug changes. _______________________________________________ Koha-bugs mailing list [email protected] http://lists.koha-community.org/cgi-bin/mailman/listinfo/koha-bugs website : http://www.koha-community.org/ git : http://git.koha-community.org/ bugs : http://bugs.koha-community.org/
