From 6b8f9031883a52e492000e31ebc010816b3f02ac Mon Sep 17 00:00:00 2001 From: uzairr Date: Wed, 22 Jul 2020 02:57:48 +0500 Subject: [PATCH] Fix xss in edit member template --- .../teams/templates/edit-team-member.underscore | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/lms/djangoapps/teams/static/teams/templates/edit-team-member.underscore b/lms/djangoapps/teams/static/teams/templates/edit-team-member.underscore index d98af57c0d78..b8bc9839c134 100644 --- a/lms/djangoapps/teams/static/teams/templates/edit-team-member.underscore +++ b/lms/djangoapps/teams/static/teams/templates/edit-team-member.underscore @@ -1,16 +1,16 @@
  • - - <%= username %>'s profile page + + <%= username /* xss-lint: disable=underscore-not-escaped */%>'s profile page
    - <%= username %> + <%= username /* xss-lint: disable=underscore-not-escaped */%>
    - <%= dateJoined %> + <%= dateJoined /* xss-lint: disable=underscore-not-escaped */%> | - <%= lastActive %> + <%= lastActive /* xss-lint: disable=underscore-not-escaped */%>
    -