[TYPO3-core] RFC #15635: Bug: XHTML validity of backend when sys_action is loaded

Stefan Galinski sgalinski at df.eu
Fri Sep 3 20:39:25 CEST 2010


Ernesto Baschny [cron IT] wrote:

> 
> Problem:
> sys_action is able to generate links for the backend.php toolbar. The
> links with a href and "&" parameters, but this is not properly escaped
> (htmlspecialchars missing).

+1 on reading and testing

-- 
Stefan Galinski


More information about the TYPO3-team-core mailing list