[ ] Refactoring (no functional changes, no api changes)
[ ] Other (please describe):
How to test this PR
Add a property to tag.attrs prototype
Render a Richtext field
Check that the added property is NOT looped over
What is the new behavior?
This PR fixes a potential security issue related to looping over object properties without assessing if they are object own properties or part of the prototype chain.
Pull request type
How to test this PR
tag.attrs
prototypeWhat is the new behavior?
This PR fixes a potential security issue related to looping over object properties without assessing if they are object own properties or part of the prototype chain.