Page MenuHomePhabricator

Category and File links should be namespace escaped to prevent inlining
Closed, ResolvedPublic


Apparently when notifications are displayed on Special:Notifications, they don't escape image links (and categories, though with less consequences) causing transclusion of these images.

This issue occurs only on Special:Notifications, not on the flyout content. This is likely not desirable.

Requesting information on which type of notifications are showing this behavior.

Version: master
Severity: normal



Event Timeline

bzimport raised the priority of this task from to Needs Triage.Nov 22 2014, 1:26 AM
bzimport added a project: Notifications.
bzimport set Reference to bz47924.
bzimport added a subscriber: Unknown Object (MLST).

This was at least an issue with edit revert notifications according to the report.

Related URL: (Gerrit Change I912e9d2a35ff956fe7604c719b6ba9d2c3d2fd6d)