Closed rayrutjes closed 6 years ago
The query retrieved in the URL is potentially used as input value. Escaping the HTML is not expected here as it makes the value unusable for that purpose. In other places where used, the query is already escaped.
Closes: #734
The query retrieved in the URL is potentially used as input value. Escaping the HTML is not expected here as it makes the value unusable for that purpose. In other places where used, the query is already escaped.
Closes: #734