aboutsummaryrefslogtreecommitdiffstats
path: root/README.md
diff options
context:
space:
mode:
authorMatthew Somerville <matthew-github@dracos.co.uk>2016-07-06 12:16:33 +0100
committerMatthew Somerville <matthew-github@dracos.co.uk>2016-07-06 16:22:40 +0100
commitb1628916495b945164729ad95c9e9f57b060c62e (patch)
tree0e841971ab5f5ca4c3548ec5806d5f2a1a3ee736 /README.md
parenta53543e81a52982fadcc97183eded29e11ec1ac5 (diff)
Fix two XSS vulnerabilities.
The title in the OpenGraph header was not being properly escaped, and the hide pins/all pins links were using single quotes which were able to be broken out of. Also remove the single quotes around rss_feed_uri, though this is not a vulnerability as its contents were sanitised (postcode or co-ords).
Diffstat (limited to 'README.md')
0 files changed, 0 insertions, 0 deletions