summaryrefslogtreecommitdiffstats
path: root/core/js/core.json
diff options
context:
space:
mode:
authorLukas Reschke <lukas@statuscode.ch>2017-03-16 13:47:27 +0100
committerLukas Reschke <lukas@statuscode.ch>2017-03-16 14:17:42 +0100
commit6c8d48b0f6faac5d5b832a70d0245941a912f78b (patch)
tree205372ba1259b2b70ac6cf470bfd599127e8d6cb /core/js/core.json
parent793d7d1bd75ef1e35cc29aef5ac03dc95aa248bb (diff)
downloadnextcloud-server-6c8d48b0f6faac5d5b832a70d0245941a912f78b.tar.gz
nextcloud-server-6c8d48b0f6faac5d5b832a70d0245941a912f78b.zip
Harden t() with DOMPurify
This mitigates issues where developers pass untrusted user-input through t() which may lead to XSS issues. Signed-off-by: Lukas Reschke <lukas@statuscode.ch>
Diffstat (limited to 'core/js/core.json')
-rw-r--r--core/js/core.json3
1 files changed, 2 insertions, 1 deletions
diff --git a/core/js/core.json b/core/js/core.json
index d589208c828..4d1d0685007 100644
--- a/core/js/core.json
+++ b/core/js/core.json
@@ -12,7 +12,8 @@
"es6-promise/dist/es6-promise.js",
"davclient.js/lib/client.js",
"clipboard/dist/clipboard.js",
- "autosize/dist/autosize.js"
+ "autosize/dist/autosize.js",
+ "DOMPurify/dist/purify.min.js"
],
"libraries": [
"jquery-showpassword.js",