https://meta.wikimedia.org/wiki/Community_Wishlist/W309 shows up on https://meta.wikimedia.org/wiki/Community_Wishlist/Wishes as "Make subreferencing work with inline refs and {{reflist}} "
Description
Description
Details
Details
Related Changes in Gerrit:
| Subject | Repo | Branch | Lines +/- | |
|---|---|---|---|---|
| Ensure titles are sanitized for display and storage | mediawiki/extensions/CommunityRequests | master | +160 -10 |
Related Objects
Related Objects
Event Timeline
Comment Actions
@Vishnu_mishra Are you planning on working on this? You most certainly are welcome to, but I wanted to note the overlap with T406998. I believe we need to render wish titles as HTML to fix T407004: MinT translation does not translate the entity title nor status. We will need to do some escaping to prevent i.e. a wish called <script>alert('I steal yo cookies!')</script> but HTML entities and the markup we introduce around the title will get rendered.
So I think this task, T406998 and T407004 all have the same solution.
Comment Actions
Change #1200744 had a related patch set uploaded (by MusikAnimal; author: MusikAnimal):
[mediawiki/extensions/CommunityRequests@master] Ensure titles are HTML-safe for display, and sanitized in storage