Skip to content

Sanitize issue description in search result

Changzheng Liu requested to merge 281046-image-rendered-in-search-result into master

What does this MR do?

This is a copy of https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/1264. After security review, we think it can be fixed here to avoid expensive backports.

This is related to issue #281046 (closed)

Screenshots (strongly suggested)

Image with tag

Screen_Shot_2021-03-10_at_11.35.07_AM

Content from the original issue

Screen_Shot_2021-03-10_at_11.35.45_AM

Does this MR meet the acceptance criteria?

Conformity

Availability and Testing

Security

If this MR contains changes to processing or storing of credentials or tokens, authorization and authentication methods and other items described in the security review guidelines:

  • Label as security and @ mention @gitlab-com/gl-security/appsec
  • The MR includes necessary changes to maintain consistency between UI, API, email, or other methods
  • Security reports checked/validated by a reviewer from the AppSec team

Related to #281046 (closed)

Edited by Changzheng Liu

Merge request reports