Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit da8df98

Browse files
committed
Fix possible Xscript exploit
1 parent 867b8c6 commit da8df98

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

evennia/web/static/webclient/js/plugins/message_routing.js

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -52,8 +52,8 @@ let spawns = (function () {
5252
//
5353
// display a row with proper editting hooks
5454
var displayRow = function (formdiv, div, regexstring, tagstring) {
55-
var regex = $('<input class="regex" type=text value="'+regexstring+'"/>');
56-
var tag = $('<input class="tag" type=text value="'+tagstring+'"/>');
55+
var regex = $.find('<input class="regex" type=text value="'+regexstring+'"/>');
56+
var tag = $.find('<input class="tag" type=text value="'+tagstring+'"/>');
5757
var del = $('<input class="delete-regex" type=button value="X"/>');
5858
regex.on('change', onAlterTag );
5959
regex.on('focusin', onFocusIn );

0 commit comments

Comments
 (0)