]> Sergey Matveev's repositories - public-inbox.git/commit
www: escape HTML in footer description
authorEric Wong <e@80x24.org>
Fri, 17 Jun 2016 18:56:02 +0000 (18:56 +0000)
committerEric Wong <e@80x24.org>
Fri, 17 Jun 2016 19:03:02 +0000 (19:03 +0000)
commit38a90ce29cb9cae6f045f516ef160d8e6accdd21
tree9048e5e5a34d15b623eef567421ac912f6026839
parent5e800c1aac067ec42cc6bcac10a0c339467a26d6
www: escape HTML in footer description

This isn't a security vulnerability since $GIT_DIR/description
is controlled by the admin; but it causes the footer to
misrender.
lib/PublicInbox/WWW.pm