Fix 1292 - Avoid XSS (#1297)

* Fix 1292 - Avoid XSS

* Fix XSS on EffectConfiguration
This commit is contained in:
LordGrey
2021-08-19 08:52:17 +02:00
committed by GitHub
parent 0227694d20
commit bd3e12d3ac
5 changed files with 11 additions and 7 deletions

View File

@@ -37,7 +37,7 @@ $(document).ready(function () {
showInfoDialog('renInst', $.i18n('conf_general_inst_renreq_t'), getInstanceNameByIndex(inst));
$("#id_btn_ok").off().on('click', function () {
requestInstanceRename(inst, $('#renInst_name').val())
requestInstanceRename(inst, encodeHTML($('#renInst_name').val()))
});
$('#renInst_name').off().on('input', function (e) {
@@ -94,7 +94,7 @@ $(document).ready(function () {
});
$('#btn_create_inst').off().on('click', function (e) {
requestInstanceCreate($('#inst_name').val());
requestInstanceCreate(encodeHTML($('#inst_name').val()));
$('#inst_name').val("");
$('#btn_create_inst').attr('disabled', true)
});