zookeeper-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From GitBox <...@apache.org>
Subject [GitHub] coheigea opened a new pull request #762: ZOOKEEPER-3238 - Adding noreferrer to target blank link
Date Wed, 09 Jan 2019 12:59:09 GMT
coheigea opened a new pull request #762: ZOOKEEPER-3238 - Adding noreferrer to target blank
link
URL: https://github.com/apache/zookeeper/pull/762
 
 
   In zookeeper-contrib-huebrowser, there is a link that uses target="_blank". Best security
practise is to also add rel="noopener noreferrer". See for example: https://dev.to/ben/the-targetblank-vulnerability-by-example.
   
   Note I did not test this as I do not use hue. However it is a fairly trivial change.

----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
users@infra.apache.org


With regards,
Apache Git Services

Mime
View raw message