diff options
author | Lukas Reschke <lukas@statuscode.ch> | 2017-03-16 13:47:27 +0100 |
---|---|---|
committer | Lukas Reschke <lukas@statuscode.ch> | 2017-03-16 14:17:42 +0100 |
commit | 6c8d48b0f6faac5d5b832a70d0245941a912f78b (patch) | |
tree | 205372ba1259b2b70ac6cf470bfd599127e8d6cb /core/js/core.json | |
parent | 793d7d1bd75ef1e35cc29aef5ac03dc95aa248bb (diff) | |
download | nextcloud-server-6c8d48b0f6faac5d5b832a70d0245941a912f78b.tar.gz nextcloud-server-6c8d48b0f6faac5d5b832a70d0245941a912f78b.zip |
Harden t() with DOMPurify
This mitigates issues where developers pass untrusted user-input through t() which may lead to XSS issues.
Signed-off-by: Lukas Reschke <lukas@statuscode.ch>
Diffstat (limited to 'core/js/core.json')
-rw-r--r-- | core/js/core.json | 3 |
1 files changed, 2 insertions, 1 deletions
diff --git a/core/js/core.json b/core/js/core.json index d589208c828..4d1d0685007 100644 --- a/core/js/core.json +++ b/core/js/core.json @@ -12,7 +12,8 @@ "es6-promise/dist/es6-promise.js", "davclient.js/lib/client.js", "clipboard/dist/clipboard.js", - "autosize/dist/autosize.js" + "autosize/dist/autosize.js", + "DOMPurify/dist/purify.min.js" ], "libraries": [ "jquery-showpassword.js", |