Skip to content

Patch for DOMXSS#892

Open
OOCAZ wants to merge 4 commits into
NASAWorldWind:developfrom
OOCAZ:develop
Open

Patch for DOMXSS#892
OOCAZ wants to merge 4 commits into
NASAWorldWind:developfrom
OOCAZ:develop

Conversation

@OOCAZ

@OOCAZ OOCAZ commented Mar 15, 2023

Copy link
Copy Markdown

Note: Filling out this template is required. Any pull request that does not include enough information to be reviewed in a timely manner may be closed at the
maintainer's discretion.

Description of the Change

Added sanitizing of append

Why Should This Be In Core?

To prevent DOMXSS.

Benefits

The benefits of this patch include extra protection against DOMXSS.

Potential Drawbacks

NA

Applicable Issues

NA

@OOCAZ

OOCAZ commented Mar 15, 2023

Copy link
Copy Markdown
Author

Needs more testing, but I believe this is patched in this PR.

@OOCAZ

OOCAZ commented Mar 20, 2023

Copy link
Copy Markdown
Author

Ran unit tests and it passes

@OOCAZ

OOCAZ commented Mar 27, 2023

Copy link
Copy Markdown
Author

can we get another approver to look at this? @PJHogan?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants