Javi Martín
e470ea1cc1
Avoid JavaScript execution in banner URLs
...
Using `sanitize` we make sure the `href` attribute does not execute any
dangerous code. The possibility of a banner pointing to a dangerous URL
was very reduced, though, since only administrators can edit this
attribute.
2019-11-13 19:52:15 +01:00
..
2019-11-13 19:52:15 +01:00
2019-11-08 19:15:04 +01:00
2019-10-26 20:10:32 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 18:11:58 +02:00
2019-11-13 01:23:59 +01:00
2019-10-24 17:11:47 +02:00
2019-11-10 14:12:21 +01:00
2019-10-24 17:11:47 +02:00
2019-11-09 19:33:02 +01:00
2019-10-24 17:11:47 +02:00
2019-11-01 17:12:31 +01:00
2019-11-10 14:12:21 +01:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-11-10 14:12:21 +01:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-11-12 19:28:35 +01:00
2019-05-28 16:36:54 +02:00
2019-09-23 13:47:45 +02:00
2019-10-26 20:10:32 +02:00
2019-10-24 17:11:47 +02:00
2019-11-01 20:08:46 +01:00
2019-11-08 19:15:04 +01:00
2019-10-24 17:56:03 +02:00
2019-11-08 19:15:04 +01:00
2019-11-10 14:12:21 +01:00
2019-11-09 19:38:13 +01:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-25 15:34:40 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-26 20:10:32 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-10-24 17:11:47 +02:00
2019-11-13 19:52:15 +01:00