mirror of
https://github.com/NodeBB/NodeBB.git
synced 2025-10-26 08:36:12 +01:00
fix: xss on flags page via ban reason
This commit is contained in:
@@ -794,7 +794,7 @@ async function mergeBanHistory(history, targetUid, uids) {
|
||||
meta: [
|
||||
{
|
||||
key: '[[user:banned]]',
|
||||
value: cur.reason,
|
||||
value: validator.escape(String(cur.reason)),
|
||||
labelClass: 'danger',
|
||||
},
|
||||
{
|
||||
|
||||
Reference in New Issue
Block a user