Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Moderators have HTML in question page titles #1686

Open
pixeldesu opened this issue Mar 23, 2024 · 0 comments
Open

Moderators have HTML in question page titles #1686

pixeldesu opened this issue Mar 23, 2024 · 0 comments
Labels
bug Issues containing bug reports good first issue First tasks that can be approached without much knowledge of the project

Comments

@pixeldesu
Copy link
Member

Steps to reproduce the problem

  1. Be a admin or moderator on Retrospring
  2. Have moderation view enabled
  3. Look at an anonymous question

Expected behaviour

The title of the page is

Anonyous Coward asked something text here | Retrospring

Actual behaviour

The title of the page is

<abbr title="bab2e0c0d9dd859202d7d0ac649675b1d5b84bc9fbd26f1e51d0aea11451807b64f3f54c3dbc93a05d1318a2c52e6423b3d2094819a16bcacb07c9a3e97f19cf">Anonymous Coward</abbr> asked something text here | Retrospring

Detailed description

This happens inside the user_screen_name helper. If a moderator is in moderation view, this unmasks anonymous users. And truly anonymous users get an <abbr> tag with their anonymous identifier.

When the method is called in the question title helper the tag is not stripped.

Specifications

Retrospring 2024.0319.0

@pixeldesu pixeldesu added bug Issues containing bug reports good first issue First tasks that can be approached without much knowledge of the project labels Mar 23, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Issues containing bug reports good first issue First tasks that can be approached without much knowledge of the project
Projects
None yet
Development

No branches or pull requests

1 participant