8000 XSS Fixed by Aravindha1234u · Pull Request #2 · 418sec/charts · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
This repository was archived by the owner on Dec 19, 2023. It is now read-only.

XSS Fixed #2

Closed
wants to merge 36 commits into from
Closed

XSS Fixed #2

wants to merge 36 commits into from

Conversation

Aravindha1234u
Copy link
Explanation About What Code Achieves:
Screenshots/GIFs:

Exploit
image

Fix
image

image

Steps To Test:

Bart Van Houtte and others added 30 commits October 13, 2020 15:45
- Adjust getColor to support RGB (TODO: HSL colors)
…dlebars-4.7.7

chore(deps): bump handlebars from 4.1.2 to 4.7.7
* Fix ReactJS TypeError, Issue frappe#323

* style: space after `if`

* style: space after `if`

Co-authored-by: Shivam Mishra <scm.mymail@gmail.com>
Bumps [dot-prop](https://github.com/sindresorhus/dot-prop) from 4.2.0 to 4.2.1.
- [Release notes](https://github.com/sindresorhus/dot-prop/releases)
- [Commits](sindresorhus/dot-prop@v4.2.0...v4.2.1)

Signed-off-by: dependabot[bot] <support@github.com>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [yargs-parser](https://github.com/yargs/yargs-parser) from 5.0.0 to 5.0.1.
- [Release notes](https://github.com/yargs/yargs-parser/releases)
- [Changelog](https://github.com/yargs/yargs-parser/blob/v5.0.1/CHANGELOG.md)
- [Commits](yargs/yargs-parser@v5.0.0...v5.0.1)

Signed-off-by: dependabot[bot] <support@github.com>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [lodash](https://github.com/lodash/lodash) from 4.17.11 to 4.17.21.
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](lodash/lodash@4.17.11...4.17.21)

Signed-off-by: dependabot[bot] <support@github.com>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@huntr-helper
Copy link

👋 Hello, @pratu16x7. @Aravindha1234u has opened a PR to us with a fix for a potential vulnerability in your repository. To view the vulnerability, please refer to the bounty URL in the first comment, above. If you want this fix in your repository, a PR will automatically open once you comment:

@huntr-helper - LGTM


☎️ Need further support?

Come and join us on our community Discord!


@pratu16x7 - want more fixes like this?

Copy this snippet into your README.md for more vulnerability fixes in the future:

[![huntr](https://cdn.huntr.dev/huntr_security_badge_mono.svg)](https://huntr.dev)

huntr

@Aravindha1234u
Copy link
Author

@scmmishra I have fixed the removed example.html file and rework on loop. Can you recheck the PR

@Aravindha1234u
Copy link
Author

Merged at Here: frappe#339

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

7 participants
0