Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Add escape flag for XSS mitigation (#3379)
- Loading branch information
Showing
1 changed file
with
5 additions
and
4 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
9331d82
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This is now showing in the Sales Takings Table.
9331d82
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Ok I missed that. The solution here is to apply styling on the last row of the table itself instead of having it in the cell contents. Separation of view and representation logic. I'll add a line to manage.php and remove the bold tags in the controller beginning next week.
9331d82
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
No Table appears to be showing in Items for the Dev Demo?
9331d82
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Ok someone might have found a bug here.i will need to check the errors to see what is going on here.
9331d82
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
@odiea seems fine now on the dev server.
9331d82
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
@jekkos Sorry but I just found another issue. If Avatars are being used in Items.
9331d82
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks for the report. Seems fine now, fix merged.