Skip to content
This repository was archived by the owner on Nov 19, 2024. It is now read-only.

Update XSS prevention guide #5143

Merged
merged 5 commits into from
Aug 27, 2019
Merged

Update XSS prevention guide #5143

merged 5 commits into from
Aug 27, 2019

Conversation

AlexMaxHorkun
Copy link
Contributor

@AlexMaxHorkun AlexMaxHorkun commented Aug 7, 2019

Purpose of this pull request

This pull request (PR) will update invalid use cases for PHTML escaping, provide guidance on XSS prevention in other areas but .phtml templates

Affected DevDocs pages

Links to Magento source code

whatsnew
Updated the XSS Prevention Strategy topic to correct invalid use cases for PHTML escaping and provide guidance on XSS prevention in other areas.

Include latest best practices, fix misleading Escaper methods cases. Keep only 1 XSS guide
@devops-devdocs
Copy link
Collaborator

An admin must run tests on this PR before it can be merged.

@AlexMaxHorkun
Copy link
Contributor Author

@dobooth dobooth added 2.2.x 2.3.x Magento 2.3 related changes Major Update Significant original updates to existing content Internal Dev Differentiates work between community and Magento staff labels Aug 15, 2019
@jeff-matthews
Copy link
Contributor

@jcalcaben, is this ready to test and merge?

@jcalcaben
Copy link
Contributor

yes, I plan on processing this the next chance I get

@jcalcaben
Copy link
Contributor

running tests

@jcalcaben
Copy link
Contributor

running tests

@jcalcaben jcalcaben merged commit 44e840b into magento:master Aug 27, 2019
@ghost
Copy link

ghost commented Aug 27, 2019

Hi @AlexMaxHorkun, thank you for your contribution!
Please, complete Contribution Survey, it will take less than a minute.
Your feedback will help us to improve contribution process.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
2.2.x 2.3.x Magento 2.3 related changes Internal Dev Differentiates work between community and Magento staff Major Update Significant original updates to existing content
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants