Branch: refs/heads/2.10
Home: https://github.com/openSUSE/open-build-service
Commit: 3feb240a4f697c864cb187c074b0246ff5bffe8e
https://github.com/openSUSE/open-build-service/commit/3feb240a4f697c864cb187...
Author: Saray Cabrera Padrón
Date: 2020-11-30 (Mon, 30 Nov 2020)
Changed paths:
A ReleaseNotes-2.10.8
Log Message:
-----------
Add Release Notes for 2.10.8
Commit: 4d7864831f671771372a60f1a92a2454caf682fa
https://github.com/openSUSE/open-build-service/commit/4d7864831f671771372a60...
Author: Eduardo Navarro
Date: 2020-11-30 (Mon, 30 Nov 2020)
Changed paths:
M src/api/app/helpers/webui/markdown_helper.rb
M src/api/spec/helpers/webui/markdown_helper_spec.rb
M src/api/spec/mailers/event_mailer_spec.rb
Log Message:
-----------
Use sanitize helper to safely display user input
Make displaying the user input in a comment safer. Preventing from
Cross-site scripting.
Tests were adapted accordingly for 2.10 release.
Adaptation of
https://github.com/openSUSE/open-build-service/commit/ae51b7cd507954b41ace6b...
Commit: 2745e83880359a122fdbed00e13247145d65dad0
https://github.com/openSUSE/open-build-service/commit/2745e83880359a122fdbed...
Author: Victor Pereira
Date: 2020-11-30 (Mon, 30 Nov 2020)
Changed paths:
A ReleaseNotes-2.10.8
M src/api/app/helpers/webui/markdown_helper.rb
M src/api/spec/helpers/webui/markdown_helper_spec.rb
M src/api/spec/mailers/event_mailer_spec.rb
Log Message:
-----------
Merge pull request #10494 from saraycp/fix_xss
Prevent potential Cross-Site Scripting in markdown rendering
Compare: https://github.com/openSUSE/open-build-service/compare/524377ff39a3...2745e8...