mirror of
https://github.com/go-gitea/gitea
synced 2024-06-18 09:15:49 +00:00
There are likely problems remaining with the way that initCommentForm is creating its elements. I suspect that a malformed avatar url could be used maliciously. |
||
---|---|---|
.. | ||
css | ||
img | ||
js | ||
less | ||
vendor |