fix(security): add csrf filter + prevent xss attacks by escaping user input

- update CI4 to v4.1.9's stable production package
- update php and js dependencies to latest
This commit is contained in:
Yassine Doghri 2022-03-04 14:33:48 +00:00
commit cd2e1e1dc3
182 changed files with 4410 additions and 4214 deletions

View file

@ -37,7 +37,7 @@ class CommentObject extends ObjectType
$this->replies = url_to(
'episode-comment-replies',
$comment->actor->username,
esc($comment->actor->username),
$comment->episode->slug,
$comment->id
);