Merge pull request #1859 from alexxn/dev-v7

Add basic xss prevention logic
This commit is contained in:
Shannon Deminick
2017-04-21 13:05:40 +10:00
committed by GitHub

View File

@@ -27,7 +27,7 @@
<script type="text/javascript" language="javascript">
jQuery(document).ready(function() {
jQuery("#<%=JTree.ClientID%>").PermissionsEditor({
userId: <%=Request.QueryString["id"] %>,
userId: <%=Request.CleanForXss("id") %>,
pPanelSelector: "#permissionsPanel",
replacePChkBoxSelector: "#chkChildPermissions"});
});