fix: escape register query param

v1.18.x
Barış Soner Uşaklı 5 years ago
parent 8c6a7954cf
commit c8fb7f9246

@ -398,7 +398,7 @@ app.cacheBuster = null;
} }
if (registerMessage) { if (registerMessage) {
$(document).ready(function () { $(document).ready(function () {
showAlert('register', decodeURIComponent(registerMessage)); showAlert('register', utils.escapeHTML(decodeURIComponent(registerMessage)));
registerMessage = false; registerMessage = false;
}); });
} }

@ -361,7 +361,7 @@
var nodes = descendantTextNodes(element); var nodes = descendantTextNodes(element);
var text = nodes.map(function (node) { var text = nodes.map(function (node) {
return node.nodeValue; return utils.escapeHTML(node.nodeValue);
}).join(' || '); }).join(' || ');
var attrNodes = attributes.reduce(function (prev, attr) { var attrNodes = attributes.reduce(function (prev, attr) {

Loading…
Cancel
Save