Strip HTML tags for gist id to avoid stored XSS on showing error [Security Issue] by jackycute · Pull Request #1691 · hackmdio/codimd

@jackycute jackycute changed the title Escape gist id to avoid stored XSS on showing error [Security Issue] Strip HTML tags for gist id to avoid stored XSS on showing error [Security Issue]

May 31, 2021

a60814billy

@Yukaii Yukaii temporarily deployed to codimd-pr-1691

June 10, 2021 05:14

Inactive

… [Security Issue]

Signed-off-by: Max Wu <jackymaxj@gmail.com>
…ist show loading attrtributes

Signed-off-by: Max Wu <jackymaxj@gmail.com>

@Yukaii Yukaii deleted the bugfix/fix-gist-id-stored-XSS branch

January 3, 2024 06:27