[Koha-bugs] [Bug 21418] New: Incorrectly filtered markup in staff client lists

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Wed Sep 26 19:50:26 CEST 2018


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=21418

            Bug ID: 21418
           Summary: Incorrectly filtered markup in staff client lists
 Change sponsored?: ---
           Product: Koha
           Version: master
          Hardware: All
                OS: All
            Status: ASSIGNED
          Severity: critical
          Priority: P5 - low
         Component: Staff Client
          Assignee: oleonard at myacpl.org
          Reporter: oleonard at myacpl.org
        QA Contact: testopia at bugs.koha-community.org
                CC: bgkriegel at gmail.com, brendan at bywatersolutions.com,
                    chris at bigballofwax.co.nz, dcook at prosentient.com.au,
                    ere.maijala at helsinki.fi, fridolin.somers at biblibre.com,
                    george at nekls.org, gmcharlt at gmail.com,
                    j.kylmala at gmail.com,
                    jonathan.druart at bugs.koha-community.org,
                    julian.maurice at biblibre.com, katrin.fischer at bsz-bw.de,
                    kohadevinim at devinim.com.tr, kyle at bywatersolutions.com,
                    liz at catalyst.net.nz, m.de.rooy at rijksmuseum.nl,
                    martin.renvoize at ptfs-europe.com,
                    mirko at abunchofthings.net, mtompset at hotmail.com,
                    nick at bywatersolutions.com,
                    testopia at bugs.koha-community.org,
                    tomascohen at gmail.com, veron at veron.ch
        Depends on: 13618

The AJAX DataTable of existing lists is broken because the action buttons are
incorrectly rendered. The "| html" filter should be removed from  the
action_block declarations.


Referenced Bugs:

https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=13618
[Bug 13618] Prevent XSS in the Staff Client and the OPAC
-- 
You are receiving this mail because:
You are watching all bug changes.


More information about the Koha-bugs mailing list