odoo/addons/website/static
Nicolas Lempereur 8c77c711ee [FIX] website: escaping saved html content
Escape text nodes changed via the web editor before sending the content
it to the server controller.

It is done since the content is unescaped one time when being displayed,
and it is not done for inline style and script tags (which may be
injected by dropping a snippet) since that would break them.

replacing the solution in cdb900044.
2015-08-27 17:27:39 +02:00
..
description
lib [FIX] website: update jQuery.transfo lib + adapt code 2014-10-27 10:24:13 +01:00
src [FIX] website: escaping saved html content 2015-08-27 17:27:39 +02:00