mirror of
https://github.com/hyperion-project/hyperion.ng.git
synced 2025-03-01 10:33:28 +00:00
Fix 1292 - Avoid XSS (#1297)
* Fix 1292 - Avoid XSS * Fix XSS on EffectConfiguration
This commit is contained in:
@@ -37,7 +37,7 @@ $(document).ready(function () {
|
||||
showInfoDialog('renInst', $.i18n('conf_general_inst_renreq_t'), getInstanceNameByIndex(inst));
|
||||
|
||||
$("#id_btn_ok").off().on('click', function () {
|
||||
requestInstanceRename(inst, $('#renInst_name').val())
|
||||
requestInstanceRename(inst, encodeHTML($('#renInst_name').val()))
|
||||
});
|
||||
|
||||
$('#renInst_name').off().on('input', function (e) {
|
||||
@@ -94,7 +94,7 @@ $(document).ready(function () {
|
||||
});
|
||||
|
||||
$('#btn_create_inst').off().on('click', function (e) {
|
||||
requestInstanceCreate($('#inst_name').val());
|
||||
requestInstanceCreate(encodeHTML($('#inst_name').val()));
|
||||
$('#inst_name').val("");
|
||||
$('#btn_create_inst').attr('disabled', true)
|
||||
});
|
||||
|
Reference in New Issue
Block a user