discourse/plugins/chat/assets/javascripts
Martin Brennan 6aae74d082
SECURITY: Rich editor chat transcript XSS
When quoting from a channel or a thread, the title
of the channel and the title of the thread could be
an XSS vector when CSP is disabled.
2025-09-30 10:09:43 +08:00
..
discourse DEV: Replace deprecated Ember's array filterBy with filter (#35018) 2025-09-29 16:42:38 -03:00
lib SECURITY: Rich editor chat transcript XSS 2025-09-30 10:09:43 +08:00