snipe-it/app/Http
Brady Wetherington 9a224a07ba
Modified how we do Select2 dynamic drop-down menus to be more secure (#9079)
* Modified how we do Select2 dynamic drop-down menus to be more secure

As noted by the author of select2, the more-secure way of creating
rich Select-dropdowns is to use jquery to create HTML snippets and
carefully modify text attributes within there. This prevents any
XSS from being brought to the page. As a side-effect, the extra
escaping that we had to do in all of the internal selectlist calls
is now no longer necessary, and has been removed. Rebased and
squashed from the original.

* Rebuilt all assets, but this still feels like it's too much stuff in here.

* Whoops, need to run that in dev, not prod
2021-02-02 15:55:21 -08:00
..
Controllers Modified how we do Select2 dynamic drop-down menus to be more secure (#9079) 2021-02-02 15:55:21 -08:00
Middleware Added #8931: add health controller without session (#8978) 2021-01-26 12:10:54 -08:00
Requests Match setup admin on Quickstart password with min reqs for Settings model 2020-12-11 13:52:48 -08:00
Traits Added: Caching of settings (#6378) 2018-11-01 19:59:50 -07:00
Transformers Modified how we do Select2 dynamic drop-down menus to be more secure (#9079) 2021-02-02 15:55:21 -08:00
Kernel.php Added #8931: add health controller without session (#8978) 2021-01-26 12:10:54 -08:00