Revert r110321: introduces an XSS vulnerability because FormatJson::encode() does...
authorTim Starling <tstarling@users.mediawiki.org>
Wed, 8 Feb 2012 00:03:16 +0000 (00:03 +0000)
committerTim Starling <tstarling@users.mediawiki.org>
Wed, 8 Feb 2012 00:03:16 +0000 (00:03 +0000)
commit8a9b79dda736e1db568f8d743c999ec956d704e7
tree5ce8aaefa0ecdcfe889a6d9cbc247a1a80f68317
parent4ccf5a9a907c2338c85a179f5bde0d3561cba8ba
Revert r110321: introduces an XSS vulnerability because FormatJson::encode() does not prevent the termination of CDATA sections when JavaScript is embedded in HTML.
includes/Xml.php