mirror of https://github.com/apache/nifi.git
NIFI-6766:
- Ensuring policy label is properly escaped when populating the user's access policy listing. This closes #3804. Signed-off-by: Joe Witt <joewitt@apache.org>
This commit is contained in:
parent
5414cd5016
commit
99e9010b32
|
@ -556,7 +556,7 @@
|
||||||
}
|
}
|
||||||
|
|
||||||
var subResource = nfCommon.substringAfterFirst(resource, '/restricted-components/');
|
var subResource = nfCommon.substringAfterFirst(resource, '/restricted-components/');
|
||||||
return "Restricted components requiring '" + subResource + "'";
|
return "Restricted components requiring '" + nfCommon.escapeHtml(subResource) + "'";
|
||||||
};
|
};
|
||||||
|
|
||||||
/**
|
/**
|
||||||
|
@ -609,9 +609,9 @@
|
||||||
}
|
}
|
||||||
|
|
||||||
if (dataContext.component.componentReference.permissions.canRead === true) {
|
if (dataContext.component.componentReference.permissions.canRead === true) {
|
||||||
policyLabel += '<span style="font-weight: 500">' + dataContext.component.componentReference.component.name + '</span>';
|
policyLabel += '<span style="font-weight: 500">' + nfCommon.escapeHtml(dataContext.component.componentReference.component.name) + '</span>';
|
||||||
} else {
|
} else {
|
||||||
policyLabel += '<span class="unset">' + dataContext.component.componentReference.id + '</span>'
|
policyLabel += '<span class="unset">' + nfCommon.escapeHtml(dataContext.component.componentReference.id) + '</span>'
|
||||||
}
|
}
|
||||||
|
|
||||||
return policyLabel;
|
return policyLabel;
|
||||||
|
|
Loading…
Reference in New Issue