Skip to content

fix(ui): sanitize add-filter success notification - #5719

Merged
hzpz merged 1 commit into
masterfrom
fix/santize-even-more-html
Sep 25, 2026
Merged

hzpz merged 1 commit into
masterfrom
fix/santize-even-more-html

Conversation

@hzpz

@hzpz hzpz commented Sep 25, 2026

Copy link
Copy Markdown
Contributor

The success toast shown after adding a notification filter interpolated the application name / instance id into an HTML message without sanitizing it. Sanitize it like the other application/instance action notifications and add regression tests for malicious names and ids.

The success toast shown after adding a notification filter interpolated
the application name / instance id into an HTML message without
sanitizing it. Sanitize it like the other application/instance action
notifications and add regression tests for malicious names and ids.
@hzpz
hzpz requested a review from a team as a code owner September 25, 2026 07:37
@hzpz
hzpz enabled auto-merge (squash) September 25, 2026 07:40
@hzpz
hzpz merged commit 9d66716 into master Sep 25, 2026
1 check passed
@hzpz
hzpz deleted the fix/santize-even-more-html branch September 25, 2026 07:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants