Bug summaries that resemble HTML might be a problem for UIs like GitHub or GitLab. Skara bots should escape sensitive parts of such summaries. Here's an example of what an unescaped <code> might do (pay attention to the bot comments to the PR): https://github.com/openjdk/jdk/pull/4273. Another example is an unescaped <section>: https://github.com/openjdk/jdk11u-dev/pull/1219.
- duplicates
-
SKARA-1027 PR should escape `<` in Issue text
-
- Closed
-
- relates to
-
SKARA-2000 Escape user handles in bug titles in pr body
-
- Resolved
-