[galaxyproject/galaxy] 9290dd: Fixes #2230
 
            Branch: refs/heads/release_16.04 Home: https://github.com/galaxyproject/galaxy Commit: 9290ddc8a72fba1bf8de7ae5788becef56030223 https://github.com/galaxyproject/galaxy/commit/9290ddc8a72fba1bf8de7ae5788be... Author: Eric Rasche <rasche.eric@gmail.com> Date: 2016-05-02 (Mon, 02 May 2016) Changed paths: M client/galaxy/scripts/mvc/form/form-input.js M static/maps/mvc/form/form-input.js.map M static/scripts/bundled/analysis.bundled.js M static/scripts/bundled/analysis.bundled.js.map M static/scripts/bundled/libs.bundled.js.map M static/scripts/mvc/form/form-input.js M templates/webapps/galaxy/workflow/display.mako M templates/webapps/galaxy/workflow/run.mako Log Message: ----------- Fixes #2230 This sanitizes some instances where tool parameters were included directly into the DOM. workflow/run.mako displayed the parameter as a value in a hidden input. This was base64 encoded as there was no better solution apparent at the time. I'm not sure where this parameter is POSTed to but we should figure that out and b64decode it, or remove the hidden parameter. client/... added the parameter value into the DOM. This was easily sanitized using a standard method. workflow/display.mako included the parameter value directly into the HTML. This was cgi.esacped Conflicts: static/scripts/bundled/libs.bundled.js.map Commit: b9b79839d0f812c660dcd39a7316af154728e1a2 https://github.com/galaxyproject/galaxy/commit/b9b79839d0f812c660dcd39a7316a... Author: John Chilton <jmchilton@gmail.com> Date: 2016-05-02 (Mon, 02 May 2016) Changed paths: M client/galaxy/scripts/mvc/form/form-input.js M static/maps/mvc/form/form-input.js.map M static/scripts/bundled/analysis.bundled.js M static/scripts/bundled/analysis.bundled.js.map M static/scripts/bundled/libs.bundled.js.map M static/scripts/mvc/form/form-input.js M templates/webapps/galaxy/workflow/display.mako M templates/webapps/galaxy/workflow/run.mako Log Message: ----------- Merge pull request #2284 from martenson/backport-2230-04 [16.04] Backport of 2230 Compare: https://github.com/galaxyproject/galaxy/compare/5cf329732307...b9b79839d0f8
participants (1)
- 
                 GitHub GitHub