mirror of
https://github.com/discourse/discourse.git
synced 2024-11-23 03:59:50 +08:00
4b0cf7f6dd
The XSS here is only possible if CSP is disabled. Low impact since CSP is enabled by default in SiteSettings. |
||
---|---|---|
.. | ||
javascripts | ||
stylesheets | ||
run-qunit.js | ||
smoke_test.js |