LimeSurvey: master 1f34bf7f

Author Committer Branch Timestamp Parent
imacat GitHub master 2020-04-15 09:36:40 master ed3dee4f
Changeset

Fixed issue [security] #16137: XSS on Mass Survey Management

Dev: Surrounded variables with htmlspecialchars() in the MassiveActionsWidget
Dev: Revised to avoid checking non-numeric suervey ID in massive survey administration.

mod - application/controllers/admin/surveyadmin.php Diff File
mod - application/extensions/admin/grid/MassiveActionsWidget/views/_selected_items.php Diff File