prawnsalad / KiwiIRC

This is **DEPRECATED**! Please go to https://github.com/kiwiirc/kiwiirc
https://kiwiirc.com
GNU Affero General Public License v3.0
891 stars 277 forks source link

Fix possible XSS attack #968

Open cristiancs opened 8 months ago

cristiancs commented 8 months ago

With a correctly crafted text, you could inject code.

I have the string, but i think is a better idea to send it via email