discourse/lib/onebox/engine
Roman Rizzi 628b293ff5 SECURITY: Onebox templates' HTML injections (stable).
The use of triple-curlies on Mustache templates opens the possibility for HTML injections.
2023-11-09 13:47:23 +11:00
..
allowlisted_generic_onebox.rb
amazon_onebox.rb
animated_image_onebox.rb
asciinema_onebox.rb
audio_onebox.rb
audioboom_onebox.rb
band_camp_onebox.rb
cloud_app_onebox.rb
coub_onebox.rb
discourse_topic_onebox.rb
facebook_media_onebox.rb
five_hundred_px_onebox.rb
flickr_onebox.rb
flickr_shortened_onebox.rb
gfycat_onebox.rb
github_actions_onebox.rb
github_blob_onebox.rb
github_commit_onebox.rb
github_folder_onebox.rb
github_gist_onebox.rb
github_issue_onebox.rb SECURITY: Onebox templates' HTML injections (stable). 2023-11-09 13:47:23 +11:00
github_pull_request_onebox.rb
gitlab_blob_onebox.rb
google_calendar_onebox.rb
google_docs_onebox.rb
google_drive_onebox.rb
google_maps_onebox.rb
google_photos_onebox.rb
google_play_app_onebox.rb
hackernews_onebox.rb
html.rb
image_onebox.rb
imgur_onebox.rb
instagram_onebox.rb
json.rb
kaltura_onebox.rb
mixcloud_onebox.rb
motoko_onebox.rb FIX: Update "Embed Motoko" Onebox URLs (#22198) 2023-07-26 09:41:01 +08:00
opengraph_image.rb
pastebin_onebox.rb
pdf_onebox.rb
pubmed_onebox.rb
reddit_media_onebox.rb
replit_onebox.rb
simplecast_onebox.rb
sketch_fab_onebox.rb
slides_onebox.rb
sound_cloud_onebox.rb
stack_exchange_onebox.rb
standard_embed.rb
steam_store_onebox.rb
threads_status_onebox.rb FEATURE: Basic support for threads.net onebox (#22471) 2023-07-06 16:02:49 -03:00
tiktok_onebox.rb
trello_onebox.rb
twitch_clips_onebox.rb
twitch_stream_onebox.rb
twitch_video_onebox.rb
twitter_status_onebox.rb
typeform_onebox.rb
video_onebox.rb
vimeo_onebox.rb
wikimedia_onebox.rb
wikipedia_onebox.rb
wistia_onebox.rb
xkcd_onebox.rb
youku_onebox.rb
youtube_onebox.rb