f9e90e92d4
While not encoding the HTML tags in the JSON response is perfectly fine since we set the proper mimetype as well as disable content sniffing a lot of automated code scanner do report this as security bug. Encoding them leads to less discussions and a lot of saved time. |
||
---|---|---|
.. | ||
contentsecuritypolicy.php | ||
datadisplayresponse.php | ||
datadownloadresponse.php | ||
dataresponse.php | ||
downloadresponse.php | ||
icallbackresponse.php | ||
ioutput.php | ||
jsonresponse.php | ||
notfoundresponse.php | ||
ocsresponse.php | ||
redirectresponse.php | ||
response.php | ||
streamresponse.php | ||
templateresponse.php |