Change
Markup in JavaScript
Issue description
Currently it is possible to write HTML markup into the JavaScript factsheet.js or form.js. Consider the security implications for this and whether this should be prohibited.
Developer comments
The JavaScript containing markup should be saveable, but should be not included in the page. Perform a check to validate the JavaScript code.
There is now a simple check upon saving the source code file to prevent the code from landing on the server in the first place.
|
Work sessions2
Start |
2023-06-09T07:30:55
|
End |
2023-06-09T09:37:22
|
Participant |
Robert Cerny
|
Start |
2023-06-14T18:17:00
|
End |
2023-06-14T19:16:45
|
Participant |
Robert Cerny
|
|
We are sorry
This page cannot be displayed in your browser. Use Firefox, Opera, Safari, or Chrome instead.