Skip to content

Improve code quality by fixing potential vulnerabilities#179

Open
arpitjain099 wants to merge 1 commit intoOpenNews:masterfrom
arpitjain099:bugfix/code-scanning-results
Open

Improve code quality by fixing potential vulnerabilities#179
arpitjain099 wants to merge 1 commit intoOpenNews:masterfrom
arpitjain099:bugfix/code-scanning-results

Conversation

@arpitjain099
Copy link
Copy Markdown

@arpitjain099 arpitjain099 commented May 5, 2025

This PR fixes code scanning codeql alerts coming from GitHub:

  • Incomplete URL substring sanitization
  • DOM text reinterpreted as HTML

I understand that this project may be out of date but please consider merging these files as they can lead to a potential security risk. @beep @ryanpitts

Please see the findings on my fork of this repo.
image

@arpitjain099 arpitjain099 force-pushed the bugfix/code-scanning-results branch from 8eaf98c to 77939cb Compare May 21, 2025 22:14
@arpitjain099
Copy link
Copy Markdown
Author

Hi @ryanpitts @johnhrnndz @beep — apologies for the unsolicited mention. I noticed you're among the recent top contributors to the repo and thought you might be well-positioned to review this PR. I'd really appreciate your feedback if you have a moment. Thank you!

@arpitjain099 arpitjain099 changed the title Fix code scanning alerts Improve code quality by fixing potential vulnerabilities May 21, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant