neos / form-fusionrenderer

Flow Form Framework preset for Fusion based Form rendering
MIT License
8 stars 16 forks source link

TASK: Escape preview output #19

Closed theilm closed 4 years ago

theilm commented 4 years ago

In order to prevent XSS, preview output should be html escaped.

bwaidelich commented 4 years ago

Ain't that a bugfix?

bwaidelich commented 4 years ago

ah, too late :)