-
When sanitizing an image like the example below, a href attribute pointing to a remote resource in an image element does not get removed, when `$sanitizer->removeRemoteReferences(true);` has been call…
-
### Is there an existing issue for this?
- [X] I have searched the existing issues
### Description
backend API `logo` returns the error (400). The validation error is returned by the API it self wi…
-
Possible a superfluous page? But may look cleaner to start
![Image](https://github.com/user-attachments/assets/360c61ad-e08a-464f-8d1a-6eeedb1288bd)
-
How does Sky prevent nodes from falsifying their identity when making requests? What is our long-term strategy towards closing any loopholes in this?
Does Sky filter out all script tags and include …
-
The spec doesn't allow non-HTTPS image URLs, but currently we don't have any code in the AMP runtime sanitizer that enforces this. Email clients sanitize this on the server-side anyway, but it'd be ni…
-
### Area(s)
area:http
## Is your change request related to a problem? Please describe.
#675 introduced a new http attribute `url.template`, which is supposed to be a low-cardinality variant o…
-
Vulnerable Library - rspec-rails-3.9.1.gem
Path to dependency file: /Gemfile.lock
Path to vulnerable library: /home/wss-scanner/.gem/ruby/2.7.0/cache/loofah-2.19.0.gem
## Vulnerabilities
| CVE…
-
### Describe the feature
Given the documentation [here](https://nuxt.com/docs/guide/going-further/runtime-config#environment-variables)
> Your desired variables must be defined in your nuxt.conf…
noook updated
2 months ago
-
### Steps to reproduce
```ruby
1. Upload an image to an ActionText editor in 7.1.3.4
2. Upgrade to 7.1.3.4
3. resave the model containing the image
4. the image preview in the editor will b…
-
Relates to: https://github.com/torrust/torrust-index-gui/discussions/519
Images in the torrent description only show if the user is logged in. If the user is not logged in, you see something like:
…