[TASK] Harden client-side SecurityUtility.encodeHtml
Ensures client-side function `SecurityUtility.encodeHtml` behaves like `htmlspecialchars(..., ENT_QUOTES)`. The function is used for complete nodes only, but now could be used for parts as well. Resolves: #93068 Releases: master, 10.4, 9.5 Change-Id: I74b09676d0fdb8ddf09e7fc639480742fe645e9b Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/67105 Tested-by:TYPO3com <noreply@typo3.com> Tested-by:
Markus Klein <markus.klein@typo3.org> Tested-by:
Torben Hansen <derhansen@gmail.com> Tested-by:
Benni Mack <benni@typo3.org> Reviewed-by:
Markus Klein <markus.klein@typo3.org> Reviewed-by:
Torben Hansen <derhansen@gmail.com> Reviewed-by:
Benni Mack <benni@typo3.org>
Showing
- Build/Sources/TypeScript/core/Resources/Public/TypeScript/SecurityUtility.ts 3 additions, 1 deletion...cript/core/Resources/Public/TypeScript/SecurityUtility.ts
- Build/Sources/TypeScript/core/Tests/SecurityUtilityTest.ts 4 additions, 0 deletionsBuild/Sources/TypeScript/core/Tests/SecurityUtilityTest.ts
- typo3/sysext/core/Resources/Public/JavaScript/SecurityUtility.js 1 addition, 1 deletion...ysext/core/Resources/Public/JavaScript/SecurityUtility.js
- typo3/sysext/core/Tests/JavaScript/SecurityUtilityTest.js 1 addition, 1 deletiontypo3/sysext/core/Tests/JavaScript/SecurityUtilityTest.js
Please register or sign in to comment