Address commit security review: the same-origin branch of safeUrl accepted //host and /\host, which browsers normalize to an external host (open redirect). Allow only true same-origin paths. |
||
|---|---|---|
| .. | ||
| operator-gui | ||
Address commit security review: the same-origin branch of safeUrl accepted //host and /\host, which browsers normalize to an external host (open redirect). Allow only true same-origin paths. |
||
|---|---|---|
| .. | ||
| operator-gui | ||