Skip to content
#

flat

Here are 231 public repositories matching this topic...

swaggypg
swaggypg commented Jan 4, 2022

Hi! I have seen the google_analytics.html file in the _includes/extensions and there is some code about google_analytics in _config.yml too. But I don't really understand how to activate this function. Could you please tell me about it? Thank you very much!
QQ截图20220104160717

bigin
bigin commented Jul 14, 2018

.titlesaver input is not sanitized and XSS-DOM vulnerable on keyup, in the Snippets and Components area. It's not dramatic, but ugly when alert-widget pops up. There you should use Ajax and validate content server-side, special characters should not be inserted in DOM.

Improve this page

Add a description, image, and links to the flat topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the flat topic, visit your repo's landing page and select "manage topics."

Learn more