The error message shown in the error template does not need to be rendered using the safe filter, and furthermore opens up an XSS vulnerability. |
||
|---|---|---|
| .. | ||
| display.html | ||
| error.html | ||
| footer.html | ||
| header.html | ||
| imageresults.html | ||
| index.html | ||
| logo.html | ||
| opensearch.xml | ||
| search.html | ||