In Webapps, add translate sanitization strategy

XMLWordPrintable

    • Type: Task
    • Resolution: Fixed
    • Priority: L3 - Default
    • 7.11.0, 7.11.0-alpha3
    • Affects Version/s: None
    • Component/s: webapp
    • None

      Problem
      With the newly introduced translate directive it is possible to inject arbitrary HTML and JavaScript via HTML script tag.

      Solution
      Enable angular-translate sanitization strategy: http://angular-translate.github.io/docs/#/guide/19_security

            Assignee:
            Unassigned
            Reporter:
            Tassilo Weidner-Mühl
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: