Fix security issues

This commit is contained in:
zefie
2022-11-25 11:40:11 -05:00
parent 76d0720727
commit 1b3cfd6726
3 changed files with 29 additions and 6 deletions

View File

@@ -302,7 +302,7 @@ ${message_font_close}
<td abswidth=5>
<td abswidth=225 maxlines=1>
${message_font_open}
${(message.subject) ? message.subject : "(No Subject)"}
${(message.subject) ? wtvshared.htmlEntitize(message.subject) : "(No Subject)"}
${message_font_close}
<td abswidth=5>
<td abswidth=47 maxlines=1>

View File

@@ -266,7 +266,7 @@ ${page_start}-${page_end}
<tr>
${(has_relation) ? `<td abswidth=20 rowspan=2 valign=top><font size="+2">&#149;` : ''}
<td abswidth=426 maxlines=1>
<font color=1bb0f1>${(message.headers.SUBJECT) ? message.headers.SUBJECT : "(No Subject)"}
<font color=1bb0f1>${(message.headers.SUBJECT) ? wtvshared.htmlEntitize(message.headers.SUBJECT) : "(No Subject)"}
<tr>
<td maxlines=1>
<font size="-1" color=544f53><b>