mirror of
https://github.com/discourse/discourse.git
synced 2025-02-17 16:55:08 +00:00
SECURITY: XSS in search results term
Thanks to Jerbi Nessim
This commit is contained in:
parent
81a48af1a3
commit
845c33e4b1
@ -75,7 +75,7 @@ export default Ember.Controller.extend({
|
|||||||
}
|
}
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
return q;
|
return Handlebars.Utils.escapeExpression(q);
|
||||||
},
|
},
|
||||||
|
|
||||||
_searchOnSortChange: true,
|
_searchOnSortChange: true,
|
||||||
|
Loading…
x
Reference in New Issue
Block a user