Uploaded image for project: 'camunda BPM'
  1. camunda BPM
  2. CAM-9680

In Webapps, add translate sanitization strategy

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Fixed
    • Icon: L3 - Default L3 - Default
    • 7.11.0, 7.11.0-alpha3
    • None
    • webapp
    • None

      Problem
      With the newly introduced translate directive it is possible to inject arbitrary HTML and JavaScript via HTML script tag.

      Solution
      Enable angular-translate sanitization strategy: http://angular-translate.github.io/docs/#/guide/19_security

        This is the controller panel for Smart Panels app

              Unassigned Unassigned
              tassilo.weidner Tassilo Weidner
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: