Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CWE-79 #684

Open
thesmokingdud3 opened this issue Jan 29, 2025 · 2 comments
Open

CWE-79 #684

thesmokingdud3 opened this issue Jan 29, 2025 · 2 comments

Comments

@thesmokingdud3
Copy link

thesmokingdud3 commented Jan 29, 2025

HTML manual sanitizing was found in packages/web/management/js/flot/excanvas.js 90. This is prone to mistakes and can also lead to xss. Consider using "sanitizeHtml" instead, or another solution.

@lukebarone
Copy link
Member

The AI entry breaks the web app, so we won't do that change as written.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants
@lukebarone @thesmokingdud3 and others