mirror of
https://github.com/NodeBB/NodeBB.git
synced 2025-10-26 16:46:12 +01:00
fix: xss on flags page via ban reason
This commit is contained in:
@@ -794,7 +794,7 @@ async function mergeBanHistory(history, targetUid, uids) {
|
|||||||
meta: [
|
meta: [
|
||||||
{
|
{
|
||||||
key: '[[user:banned]]',
|
key: '[[user:banned]]',
|
||||||
value: cur.reason,
|
value: validator.escape(String(cur.reason)),
|
||||||
labelClass: 'danger',
|
labelClass: 'danger',
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
|
|||||||
Reference in New Issue
Block a user