Skip to content

[Feature] Sanitize mail template inputs #784

@simonhir

Description

@simonhir

Relevant component

refarch-integrations

Problem description (optional)

Currently the mail template inputs are directly used and allow Cross-Site-Scripting attacks. Under DigiWF com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer was used for that.

Desired solution

Add mail template input sanitization to prevent XSS attacks.

Considered alternatives (optional)

No response

Additional context (optional)

No response

No duplicate

  • I confirm that this issue is not a duplicate

Code of Conduct

  • I agree to follow this project's Code of Conduct

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    Status

    Open

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions