comparison .hgtags @ 8498:cd8fa11c5c89 stable

repogroups: fix HTML markup of descriptions Repogroup descriptions were not urlified like repo descriptions are. That caused incorrect rendering with posibility of XSS. The problem was introduced in 0.4.0 with 6db3122e4d75. Thanks to stypr of Flatt Security for reporting this vulnerability.
author Mads Kiilerich <mads@kiilerich.com>
date Tue, 10 Nov 2020 11:30:16 +0100
parents 855b37d3bacd
children e4d44e4e7716
comparison
equal deleted inserted replaced
8497:c387989f868f 8498:cd8fa11c5c89