Files
kiwistation/code
silicons 452d2ad6e7 [s] sanitizes nanite extra settings (#53065)
/datum/nanite_extra_setting/text/get_value()
return html_encode(value)

HTML injection bad. Brainwashing and potentially happiness programs are all subject to this, unless code has changed for how objective text is rendered. I don't think there's any case where nanites even need to be able to accept raw html.
2020-08-20 07:57:42 +12:00
..
2020-08-18 22:35:33 -03:00
2020-08-19 02:26:30 -03:00
2019-09-16 16:44:42 +12:00