A showcase of sites and apps made with Wagtail CMS, the easy to use, open source Django content management system
84
stars
21
forks
source link
Stop marking GET params & CMS content as safe, no auto-escaping #46
Closed
thibaudcolas closed 7 years ago
XSS injection vector because of
safe
filter on user input.