[Phpmyadmin-devel] Grid editing and escaping
Aris Feryanto
aris_feryanto at yahoo.com
Fri Aug 19 10:02:54 CEST 2011
On 19 Agu 2011, at 15:36, Aris Feryanto <aris_feryanto at yahoo.com> wrote:
> Hi Michal,
>
>> From: Michal Čihař <michal at cihar.com>
>>
>> Hi
>>
>> it looks like grid editing does not properly handle escaping HTML
>> entities. Just try importing test/test_data/exploit_test.sql and edit
>> any row in exploit_test.evil_content.
>>
>
> Thank you for pointing this out. I fixed this in my git.
>
I also change the way of grid editing a bit. For normal text, the grid editing is shown without 'edit area' (bigger editing area under the edited cell) anymore. I think this is better than having two input field for one edited cell.
--
Aris Feryanto
More information about the Developers
mailing list