Skip to content

js email validation freeze browser #1540

@syky01

Description

@syky01

Steps to reproduce:

$form = new Form;
$form->addText('email', 'Email:')
  ->addRule(Form::FILLED, 'Zadejte email')
  ->addRule(Form::EMAIL, 'Email nemá správný formát');
$form->addSubmit('send', 'Odeslat');
$this->template->form = $form;

paste to input, click to submit:
"><img src=x onerror=prompt(document.domain)>

result:
freeze browser tab

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions