mirror of
https://github.com/git/git.git
synced 2026-02-20 06:45:11 +00:00
The title of an RSS feed is generated from many components, including the filename provided as a query parameter, but we failed to quote it. Besides showing the wrong output, this is a vector for XSS attacks. Signed-off-by: Jeff King <peff@peff.net>
243 KiB
Executable File
243 KiB
Executable File