From d51876bc8e10d1f8872b28cea113b97018bddb1f Mon Sep 17 00:00:00 2001 From: Daniel Veillard Date: Fri, 3 Jul 2015 20:47:08 +0800 Subject: [PATCH] Avoid XSS vulnerability on the search engine Raised by https://www.xssposed.org/incidents/69566/ Need to escape the user provided query before displaying it back --- docs/search.php.code.in | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/search.php.code.in b/docs/search.php.code.in index df25cd657..84f87591d 100644 --- a/docs/search.php.code.in +++ b/docs/search.php.code.in @@ -13,7 +13,7 @@
- +