Add consistent xss mitigation on all views

Description

  • Remove the encoding in the handlers and put it in the actual layout at the point of use.

  • Make sure we do the same for the prc.pageTitle, prc.metaDescription and prc.metaKeyWords variables.

We need to be able to prevent things like the following:

reference:

Activity

Show:

Luis Majano December 19, 2022 at 6:01 PM

Luis Majano mentioned this issue in a commit of Ortus Websites / www.forgebox.io on branch development:

Merge branch 'add-consistent-xss-mitigation' into 'development'

Luis Majano December 7, 2022 at 10:31 PM

Javier Quintero mentioned this issue in a merge request of Ortus Websites / www.forgebox.io on branch add-consistent-xss-mitigation:

#resolve Add consistent xss mitigation on all views

Luis Majano December 7, 2022 at 10:21 PM

Javier Quintero mentioned this issue in a commit of Ortus Websites / www.forgebox.io on branch add-consistent-xss-mitigation:

#resolve Add consistent xss mitigation on all views

Fixed
Pinned fields
Click on the next to a field label to start pinning.

Details

Assignee

Reporter

Fix versions

Priority

Sentry

Created November 23, 2022 at 4:04 PM
Updated January 31, 2023 at 6:21 PM
Resolved December 29, 2022 at 5:50 PM