Skip to content

fix: escape data coming from API to table if not marked as safe#49

Merged
mihalikv merged 4 commits intomainfrom
dev_escape_api
May 28, 2025
Merged

fix: escape data coming from API to table if not marked as safe#49
mihalikv merged 4 commits intomainfrom
dev_escape_api

Conversation

@mihalikv
Copy link
Copy Markdown
Contributor

Default tabulator formatter is changed to HTML to be able to show Shoes &amp; Shirts &lt;img src=x onerror=alert(1)&gt; as Shoes & Shirts <img src=x onerror=alert(1)>

@mihalikv mihalikv merged commit a6e982d into main May 28, 2025
2 checks passed
@mihalikv mihalikv deleted the dev_escape_api branch June 6, 2025 13:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant