Sanitize all data coming from CMS with htmlentities. #4

Closed
opened 2020-07-28 19:09:53 +02:00 by sergiotarxz · 2 comments
Owner

Since sometimes is difficult to say where a value given by the CMS comes from it may be worth to use htmlentities with all the PHP output to ensure XSS cannot happen.

Since sometimes is difficult to say where a value given by the CMS comes from it may be worth to use htmlentities with all the PHP output to ensure XSS cannot happen.
Author
Owner

Done in #10.

Done in #10.
Author
Owner

Done in #10.

Done in #10.
Sign in to join this conversation.
No Label
No Milestone
No Assignees
1 Participants
Notifications
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: sergiotarxz/Pequenio#4
No description provided.