-
- Downloads
Merge branch 'security-60143-patch-additional-xss-vector-in-wikis' into 'master'
Extract SanitizeNodeLink and apply to WikiLinkFilter See merge request gitlab/gitlabhq!3143
Showing
- changelogs/unreleased/security-60143-patch-additional-xss-vector-in-wikis.yml 5 additions, 0 deletions...d/security-60143-patch-additional-xss-vector-in-wikis.yml
- lib/banzai/filter/autolink_filter.rb 2 additions, 9 deletionslib/banzai/filter/autolink_filter.rb
- lib/banzai/filter/base_sanitization_filter.rb 2 additions, 30 deletionslib/banzai/filter/base_sanitization_filter.rb
- lib/banzai/filter/wiki_link_filter.rb 12 additions, 3 deletionslib/banzai/filter/wiki_link_filter.rb
- lib/banzai/filter/wiki_link_filter/rewriter.rb 0 additions, 8 deletionslib/banzai/filter/wiki_link_filter/rewriter.rb
- lib/gitlab/utils/sanitize_node_link.rb 61 additions, 0 deletionslib/gitlab/utils/sanitize_node_link.rb
- spec/lib/banzai/filter/wiki_link_filter_spec.rb 0 additions, 42 deletionsspec/lib/banzai/filter/wiki_link_filter_spec.rb
- spec/lib/banzai/pipeline/wiki_pipeline_spec.rb 79 additions, 0 deletionsspec/lib/banzai/pipeline/wiki_pipeline_spec.rb
- spec/lib/gitlab/utils/sanitize_node_link_spec.rb 72 additions, 0 deletionsspec/lib/gitlab/utils/sanitize_node_link_spec.rb
lib/gitlab/utils/sanitize_node_link.rb
0 → 100644
Please register or sign in to comment