Fixed potential XSS injection vectors in datatables columns

This commit is contained in:
Jan Böhmer 2023-02-26 01:23:36 +01:00
parent 5f39d8e594
commit 83cd91f1d1
6 changed files with 10 additions and 10 deletions

View file

@ -50,6 +50,6 @@ class SIUnitNumberColumn extends AbstractColumn
return '';
}
return $this->formatter->format((float) $value, $this->options['unit'], $this->options['precision']);
return htmlspecialchars($this->formatter->format((float) $value, $this->options['unit'], $this->options['precision']));
}
}