atk4 / ui

Robust and easy to use PHP Framework for Web Apps
https://atk4-ui.readthedocs.io
MIT License
443 stars 106 forks source link

Form\Control::onChange() should not accept JS code as string #1999

Closed mvorisek closed 1 year ago

mvorisek commented 1 year ago

passing JS code as string is dangerous

BC break should be minimal as used in Form\Control::onChange() method only