Browse Source

Fix XSS.

Thanks to xet7 !
Lauri Ojansivu 5 years ago
parent
commit
99f68f36b0
1 changed files with 1 additions and 1 deletions
  1. 1 1
      client/components/rules/actions/cardActions.jade

+ 1 - 1
client/components/rules/actions/cardActions.jade

@@ -75,7 +75,7 @@ template(name="cardActions")
         button.trigger-button.trigger-button-color.js-show-color-palette(
           id="color-action"
           class="card-details-{{cardColorButton}}")
-          | {{{_ cardColorButtonText }}} // XSS?!
+          | {{_ cardColorButtonText }}
     div.trigger-button.js-set-color-action.js-goto-rules
       i.fa.fa-plus