Skip to content

fix(ldapurl): escape HTML chars in created HTML anchor - #628

Merged
mistotebe merged 1 commit into
python-ldap:mainfrom
spaceone:fix/xss-ldap-url
Aug 28, 2026
Merged

fix(ldapurl): escape HTML chars in created HTML anchor#628
mistotebe merged 1 commit into
python-ldap:mainfrom
spaceone:fix/xss-ldap-url

Conversation

@spaceone

Copy link
Copy Markdown
Contributor

to guard against Cross Site Scripting (XSS) attacks.

to guard against Cross Site Scripting (XSS) attacks.

@mistotebe mistotebe left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

We had that in the ldapurl module? Thank you!

@mistotebe mistotebe added this to the 3.4.8 milestone Aug 28, 2026
@mistotebe
mistotebe merged commit bfcccb3 into python-ldap:main Aug 28, 2026
16 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants