[MAGNOLIA-7050] Enable the new XSS-prevention mechanism for rendering Created: 30/May/17  Updated: 10/Nov/17  Resolved: 31/May/17

Status: Closed
Project: Magnolia
Component/s: None
Affects Version/s: None
Fix Version/s: None

Type: Task Priority: Neutral
Reporter: Maxime Michel Assignee: Unassigned
Resolution: Duplicate Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Issue Links:
Cloners
relation
Template:
Acceptance criteria:
Empty
Task DoR:
Empty
Documentation update required:
Yes

 Description   

This is a follow-up to MAGNOLIA-6448.

  • /server/engine/escapeHtml should be added and default to true
  • the ContentTypeFilter sanitizeUrl feature can be removed (revert
    26c5253540ee338ce6659c32605b28e8d02932cc)

Generated at Mon Feb 12 04:20:15 CET 2024 using Jira 9.4.2#940002-sha1:46d1a51de284217efdcb32434eab47a99af2938b.