]> git.ipfire.org Git - thirdparty/foundation/foundation-sites.git/commit
fixed XSS vulnerability in Clearing 6640/head
authorMaya Kokits <hello@mayakokits.com>
Fri, 19 Jun 2015 16:17:07 +0000 (18:17 +0200)
committerMaya Kokits <hello@mayakokits.com>
Fri, 19 Jun 2015 16:17:07 +0000 (18:17 +0200)
commit26a3c4425334e717f9def61cb68c655014922a76
treeeb4e72413637a33c3644c3c3d1ec59aa2aeb7c41
parent880b4cfed1971b928658095c08060768100f62d7
fixed XSS vulnerability in Clearing

.html() executes even encoded scripts.
.innerHTML doesn't.
js/foundation/foundation.clearing.js