unofficial mirror of notmuch@notmuchmail.org
 help / color / mirror / code / Atom feed
* nmweb HTML injection
@ 2022-08-22  6:47 Jakub Wilk
  2022-08-22  8:35 ` Michael J Gruber
  2022-09-05 11:07 ` [PATCH] nmweb: escape subject in search view David Bremner
  0 siblings, 2 replies; 5+ messages in thread
From: Jakub Wilk @ 2022-08-22  6:47 UTC (permalink / raw)
  To: notmuch

See: https://nmbug.notmuchmail.org/nmweb/search/markup%20where%20appropriate

<code> and <p> from the mail subject was dumped without escaping into HTML.

-- 
Jakub Wilk

^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2022-09-23 23:21 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2022-08-22  6:47 nmweb HTML injection Jakub Wilk
2022-08-22  8:35 ` Michael J Gruber
2022-09-05 11:07 ` [PATCH] nmweb: escape subject in search view David Bremner
2022-09-17  0:50   ` David Bremner
2022-09-23 23:21   ` David Bremner

Code repositories for project(s) associated with this public inbox

	https://yhetil.org/notmuch.git/

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).