tlhunter/Cobalt-Calibur-3

XSS

tlhunter opened this issue · 1 comments

escaped HTML is being unescaped when the text is written back into the DOM

fixed in b0ca8ea