You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
There's a XSS vulnerability in the MenuItemStaticURLType type. Would it be possible to add a validation rule to the MenuItemStaticURLType. So for example add something like: 'starts_with:/,https://,http://'.
The text was updated successfully, but these errors were encountered:
Don't know if you've figured out a solution already, but this may help if not:
You should just be able to remove the menu type from the config (menu_item_types), create an extended MenuItemStaticURLType class, and then add the rule to the new class's getRules() method. Don't forget to add your new class to the config!
There's a XSS vulnerability in the MenuItemStaticURLType type. Would it be possible to add a validation rule to the MenuItemStaticURLType. So for example add something like:
'starts_with:/,https://,http://'
.The text was updated successfully, but these errors were encountered: