mirror of
https://github.com/discourse/discourse.git
synced 2025-02-11 13:55:07 +00:00
The XSS here is only possible if CSP is disabled. Low impact since CSP is enabled by default in SiteSettings.
The XSS here is only possible if CSP is disabled. Low impact since CSP is enabled by default in SiteSettings.