mirror of
https://github.com/go-gitea/gitea.git
synced 2025-11-15 10:16:03 +01:00
There are likely problems remaining with the way that initCommentForm is creating its elements. I suspect that a malformed avatar url could be used maliciously.
96 KiB
96 KiB