Skip to content

Conversation

@WojciechMazur
Copy link
Contributor

Backports #19980 to the LTS branch.

PR submitted by the release tooling.
[skip ci]

This PR fixes the `_layouts/search.html` file to use `innerText` rather
than `innerHTML`. This will prevent the ability to inject HTML/XSS into
the code of the page.
[Cherry-picked 4554131]
Base automatically changed from lts-19914 to lts-3.3 July 4, 2024 10:02
@WojciechMazur
Copy link
Contributor Author

No regressions detected in the community build up to lts-19986.

Reference

@WojciechMazur WojciechMazur merged commit 29c9888 into lts-3.3 Jul 4, 2024
@WojciechMazur WojciechMazur deleted the lts-19980 branch July 4, 2024 10:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants