Security / inconsistency

4.49K viewsUpdates
0

Please strip html tags from strings before rendering it in lists. For example,

You can notice it got <strong> from comment body.

You can also notice it have comment from post that I have already removed (ttytytytyt). After I removed that answer completely, now it just shows +1 commented (empty string) instead of removing it from rep meta too.

I think I have reported this one and maybe it’s already fixed. Still using 2.4.4