@[email protected] to [email protected] • 2 years agoMultiple lemmy instances are getting hit with a js injectionmessage-square22fedilinkarrow-up174
arrow-up174message-squareMultiple lemmy instances are getting hit with a js injection@[email protected] to [email protected] • 2 years agomessage-square22fedilink
minus-squareIHeartBadCodelinkfedilink11•2 years agoIssue 1895 opened and patch purposed for the core issue. The markdown editor does no escaping input on custom emojis. This is likely why users on app were seeing text and not getting the redirect.
minus-squareHarkMahlberglinkfedilink1•2 years ago“And I hope you learned to sanitize your database inputs.” (Man this one is old.)
Issue 1895 opened and patch purposed for the core issue. The markdown editor does no escaping input on custom emojis. This is likely why users on app were seeing text and not getting the redirect.
“And I hope you learned to sanitize your database inputs.” (Man this one is old.)
🙃