mirror of
https://github.com/silverstripe/silverstripe-framework
synced 2024-10-22 14:05:37 +02:00
f8bbc0a726
Fixes reflected XSS in Group titles when using in group selections (e.g. in "New Member" form).
6 lines
215 B
Scheme
6 lines
215 B
Scheme
<select $AttributesHTML>
|
|
<% loop Options %>
|
|
<option value="$Value.XML"<% if Selected %> selected="selected"<% end_if %><% if Disabled %> disabled="disabled"<% end_if %>>$Title.XML</option>
|
|
<% end_loop %>
|
|
</select>
|