The error message shown in the error template does not need to be rendered using the safe filter, and furthermore opens up an XSS vulnerability. |
||
|---|---|---|
| .. | ||
| models | ||
| static | ||
| templates | ||
| utils | ||
| __init__.py | ||
| __main__.py | ||
| filter.py | ||
| request.py | ||
| routes.py | ||
The error message shown in the error template does not need to be rendered using the safe filter, and furthermore opens up an XSS vulnerability. |
||
|---|---|---|
| .. | ||
| models | ||
| static | ||
| templates | ||
| utils | ||
| __init__.py | ||
| __main__.py | ||
| filter.py | ||
| request.py | ||
| routes.py | ||