the template don't escape the html inside itself
Hello,
the template system doesn't escape the html inside itself, it can be dangerous and a security problem, that should be fixed
Cheers
(from redmine: issue id 2062, created on 2013-03-08, closed on 2013-04-05)
- Changesets:
- Revision 68c99e0a by Côme Chilliet on 2013-03-18T15:11:54.000Z:
Fixes: #2062 the template don't escape the html inside itself
- Custom Fields:
- Bug in version: 1.0.5
- Uploads: