mirror of
				https://github.com/searxng/searxng.git
				synced 2025-10-31 02:27:06 -04:00 
			
		
		
		
	[fix] query escaped in all htmls, invalid todo removed
This commit is contained in:
		
							parent
							
								
									22a3cf7ac7
								
							
						
					
					
						commit
						ed925cf561
					
				| @ -307,7 +307,6 @@ def autocompleter(): | |||||||
|     else: |     else: | ||||||
|         request_data = request.args |         request_data = request.args | ||||||
| 
 | 
 | ||||||
|     # TODO fix XSS-vulnerability |  | ||||||
|     query = request_data.get('q', '').encode('utf-8') |     query = request_data.get('q', '').encode('utf-8') | ||||||
| 
 | 
 | ||||||
|     if not query: |     if not query: | ||||||
|  | |||||||
		Loading…
	
	
			
			x
			
			
		
	
		Reference in New Issue
	
	Block a user