edf7dbfacd
Don't accidentally mark unsafe diff lines as HTML safe Fixes potential XSS issue when a legacy diff note is created on a merge request whose diff contained HTML See https://gitlab.com/gitlab-org/gitlab-ce/issues/25249 See merge request !2040
4 lines
91 B
YAML
4 lines
91 B
YAML
---
|
|
title: Don't accidentally mark unsafe diff lines as HTML safe
|
|
merge_request:
|
|
author:
|