fix(security): add csrf filter + prevent xss attacks by escaping user input

- update CI4 to v4.1.9's stable production package
- update php and js dependencies to latest
This commit is contained in:
Yassine Doghri 2022-03-04 14:33:48 +00:00
commit cd2e1e1dc3
182 changed files with 4410 additions and 4214 deletions

View file

@ -30,8 +30,7 @@ class NodeInfo2Controller extends Controller
'version' => '1.0',
'server' => [
'baseUrl' => base_url(),
'name' => service('settings')
->get('App.siteName'),
'name' => esc(service('settings') ->get('App.siteName')),
'software' => 'Castopod',
'version' => CP_VERSION,
],