Skip to content
This repository has been archived by the owner on Dec 1, 2022. It is now read-only.

XSS on smarty.get.XXX vars #424

Open
ASponch opened this issue Mar 10, 2018 · 0 comments
Open

XSS on smarty.get.XXX vars #424

ASponch opened this issue Mar 10, 2018 · 0 comments

Comments

@ASponch
Copy link
Contributor

ASponch commented Mar 10, 2018

There is a lot of failure on templates who uses the {smarty.get.XXX} vars. To fix it : {smarty.get.XXX|escape:"html"}

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant