securedrop icon indicating copy to clipboard operation
securedrop copied to clipboard

Organization name gets escaped twice

Open eaon opened this issue 3 years ago • 1 comments

Description

When configuring an instance's name as (for example) "Hello & World", the & shows up as & wherever the organization name is used, because it is escaped when it is being set and again when it is being displayed.

Comments

As far as I can tell, the organization name is the only user provided input that is escaped before it is set - oversight or intentional?

eaon avatar Mar 23 '22 14:03 eaon

Probably more overzealousness!

zenmonkeykstop avatar Mar 23 '22 20:03 zenmonkeykstop