[SECURITY] Replace parseFunc with htmlspecialchars in element "table" 69/45269/2
authorGeorg Ringer <georg.ringer@gmail.com>
Tue, 15 Dec 2015 10:34:48 +0000 (11:34 +0100)
committerOliver Hader <oliver.hader@typo3.org>
Tue, 15 Dec 2015 10:34:56 +0000 (11:34 +0100)
commite737a346822d2b92e206d25c9d339b181a70ad18
tree59109658bcfd8ef19bbc494a8f15ddf0b76ce150
parent2dbcfaad45983c46516e39ca36956088eb66e4f0
[SECURITY] Replace parseFunc with htmlspecialchars in element "table"

Instead of using the lib.parseFunc htmlspecialchars is used for
the table cell rendering.

Resolves: #25245
Releases: master, 6.2
Security-Commit: 3d64bcca9bf08bbb472d016145fc1e1befc75daf
Security-Bulletins: TYPO3-CORE-SA-2015-010, 011, 012, 013, 014, 015
Change-Id: Ifd285572be52cdceddd72fdac5da01f7c632f2d0
Reviewed-on: https://review.typo3.org/45269
Reviewed-by: Oliver Hader <oliver.hader@typo3.org>
Tested-by: Oliver Hader <oliver.hader@typo3.org>
typo3/sysext/css_styled_content/static/setup.txt
typo3/sysext/css_styled_content/static/v4.5/setup.txt
typo3/sysext/css_styled_content/static/v4.6/setup.txt
typo3/sysext/css_styled_content/static/v4.7/setup.txt
typo3/sysext/css_styled_content/static/v6.0/setup.txt
typo3/sysext/css_styled_content/static/v6.1/setup.txt