← Back to team overview

mahara-contributors team mailing list archive

[Bug 1373170] Re: Description of a skin should be html escaped

 

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-8699

-- 
You received this bug notification because you are a member of Mahara
Contributors, which is subscribed to Mahara.
Matching subscriptions: Subscription for all Mahara Contributors -- please ask on #mahara-dev or mahara.org forum before editing or unsubscribing it!
https://bugs.launchpad.net/bugs/1373170

Title:
  Description of a skin should be html escaped

Status in Mahara ePortfolio:
  Fix Released
Status in Mahara 1.10 series:
  Fix Released
Status in Mahara 1.8 series:
  Fix Released
Status in Mahara 1.9 series:
  Fix Released

Bug description:
  Version: master (1.10), 1.9
  Platform, browser: any

  The skin description displayed in the pop-up window when click the 'i'
  button in the page htdocs/skin/index.php should be html escaped.

  See the attached file

To manage notifications about this bug go to:
https://bugs.launchpad.net/mahara/+bug/1373170/+subscriptions


References