View Issue Details

This bug affects 1 person(s).
 258
IDProjectCategoryView StatusLast Update
15286Bug reportsSecuritypublic2021-03-19 12:13
Reporterollehar Assigned Toc_schmitz  
PrioritynoneSeverityminor 
Status closedResolutionno change required 
Product Version4.0.0-RC3 
Target Version4.0.0-RC4 
Summary15286: Don't use eval in JS
Description

We should probably discuss if eval is needed?

We also use it in PHP to create "dynamic" tables...

TagsNo tags attached.
Bug heat258
Complete LimeSurvey version number (& build)latest
I will donate to the project if issue is resolvedNo
Browser-
Database type & version-
Server OS (if known)-
Webserver software & version (if known)-
PHP Version-

Users monitoring this issue

There are no users monitoring this issue.

Activities

DenisChenu

DenisChenu

2019-09-16 15:09

developer   ~53584

Yii use it for dynamic generation of cell data
https://www.yiiframework.com/doc/api/1.1/CComponent#evaluateExpression-detail
Used a lot on all gridview , you want to remove Yii grid ?

Same with Yii2 : https://www.yiiframework.com/doc/api/2.0/yii-grid-column#$content-detail

ollehar

ollehar

2019-09-16 15:28

administrator   ~53586

Can't find eval() in the Yii 2 link?

DenisChenu

DenisChenu

2019-09-16 15:49

developer   ~53587

Yes, you're right :).

But Yii2 still have https://www.yiiframework.com/doc/api/2.0/yiirequirementchecker#evaluateExpression()-detail , unsure where it used.

ollehar

ollehar

2019-09-16 16:40

administrator   ~53589

Bah.

cdorin

cdorin

2020-12-23 17:52

reporter   ~61130

to be closed?

c_schmitz

c_schmitz

2021-03-19 12:13

administrator   ~63474

Hello ollehar,

we have asked for feedback on this issue. Because we did not get an answer we assume that the issue is resolved.
However, should you be able to reproduce the issue using the latest version, please feel free to re-open the issue and give us exact details on how to reproduce it.

Thank you and best regards,

c_schmitz

Issue History

Date Modified Username Field Change
2019-09-16 14:46 ollehar New Issue
2019-09-16 15:09 DenisChenu Note Added: 53584
2019-09-16 15:28 ollehar Note Added: 53586
2019-09-16 15:49 DenisChenu Note Added: 53587
2019-09-16 16:40 ollehar Note Added: 53589
2020-12-23 17:52 cdorin Status new => feedback
2020-12-23 17:52 cdorin Note Added: 61130
2021-03-19 12:13 c_schmitz Assigned To => c_schmitz
2021-03-19 12:13 c_schmitz Status feedback => closed
2021-03-19 12:13 c_schmitz Resolution open => no change required
2021-03-19 12:13 c_schmitz Note Added: 63474