uniphil / hes-vendor-dash-issues

0 stars 0 forks source link

The fields are all visible in the BIO and ITEMS sections, but look like this: #1

Closed uniphil closed 3 years ago

uniphil commented 3 years ago

[HTML appears in form inputs -- see screenshot in doc] [Terry notes]

uniphil commented 3 years ago

moved back to triage/backlog until we have a way to reproduce the problem.

uniphil commented 3 years ago

My best guess is that having a " quote somewhere in an unescaped html parameter can break the markup. TODO: add tests to validate

uniphil commented 3 years ago

ok, got a repro:

Screenshot_2021-04-21 Edit Vendor

it looks like this if you visit the edit page when the session is expired. should probably check that the login is valid and redirect if not.

uniphil commented 3 years ago

fixed via https://github.com/uniphil/festival-vendors/commit/8509bb2444c04f8d2d082464aa571ca110ba447f