Module: check_mk
Branch: master
Commit: f9e55fcec883767a0766133bc814c285f1934d9d
URL:
http://git.mathias-kettner.de/git/?p=check_mk.git;a=commit;h=f9e55fcec88376…
Author: Lars Michelsen <lm(a)mathias-kettner.de>
Date: Fri Dec 19 15:20:30 2014 +0100
#1800 FIX Fixed umlauts and HTML tags in exception texts
Previous versions allowed HTML codes to be used in texts of exceptions to give the
error messages some kind of markup. This was removed to prevent XSS attacks. Now
we changed the code to only allow special markup tags like <tt>, <b>,
<i>, <br>.
So if you saw these tags in error messages in previous version, they should be
fixed now.
Additionally, when you used the Web GUI localized, for example in German language,
you might have had problems with umlauts in error messages. This has been fixed
and cleaned up.
---
.werks/1800 | 20 ++++++++++
ChangeLog | 1 +
web/htdocs/html_mod_python.py | 6 ++-
web/htdocs/htmllib.py | 59 ++++++++++++++--------------
web/htdocs/index.py | 85 ++++++++++++++---------------------------
web/htdocs/lib.py | 40 ++++++++++++-------
6 files changed, 108 insertions(+), 103 deletions(-)
Diff:
http://git.mathias-kettner.de/git/?p=check_mk.git;a=commitdiff;h=f9e55fcec8…