2
0
Эх сурвалжийг харах

Merge pull request #4769 from ro78/patch-1

Update base.twig to escape simple quote
Niklas Meyer 2 жил өмнө
parent
commit
6fd9efc30a

+ 1 - 1
data/web/templates/base.twig

@@ -172,7 +172,7 @@ function recursiveBase64StrToArrayBuffer(obj) {
     // TFA, CSRF, Alerts in footer.inc.php
     // TFA, CSRF, Alerts in footer.inc.php
     // Other general functions in mailcow.js
     // Other general functions in mailcow.js
     {% for alert_type, alert_msg in alerts %}
     {% for alert_type, alert_msg in alerts %}
-    mailcow_alert_box('{{ alert_msg|raw }}', '{{ alert_type }}');
+    mailcow_alert_box('{{ alert_msg|raw|e("js") }}', '{{ alert_type }}');
     {% endfor %}
     {% endfor %}
 
 
     // Confirm TFA modal
     // Confirm TFA modal