Skip to content

Security Fix.#3

Merged
johnsyweb merged 3 commits into
paj/refactoringsfrom
paj/sec
Mar 6, 2026
Merged

Security Fix.#3
johnsyweb merged 3 commits into
paj/refactoringsfrom
paj/sec

Conversation

@johnsyweb
Copy link
Copy Markdown
Owner

Context

GitHub / CodeQL pointed this out.

Change

Escape dynamic content used in progress messages, introduce a shared escape_html helper, and wire it into the extension and userscript so status/errors can't inject markup.

Confirmation

Tests pass.

johnsyweb and others added 3 commits March 6, 2026 16:53
Escape dynamic content used in progress messages, introduce a shared escape_html
helper, and wire it into the extension and userscript so status/errors can't
inject markup.
@johnsyweb johnsyweb merged commit db20776 into paj/refactorings Mar 6, 2026
3 checks passed
@johnsyweb johnsyweb deleted the paj/sec branch March 6, 2026 06:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant