From 623397d20a761a58764546de2752c9cb93a41113 Mon Sep 17 00:00:00 2001 From: Romain Date: Fri, 30 Sep 2022 10:32:15 +0200 Subject: [PATCH] Update base.twig to escape simple quote Update base.twig to escape simple quote See issue https://github.com/mailcow/mailcow-dockerized/issues/4718 --- data/web/templates/base.twig | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/data/web/templates/base.twig b/data/web/templates/base.twig index b19c548a..736ead7c 100644 --- a/data/web/templates/base.twig +++ b/data/web/templates/base.twig @@ -172,7 +172,7 @@ function recursiveBase64StrToArrayBuffer(obj) { // TFA, CSRF, Alerts in footer.inc.php // Other general functions in mailcow.js {% for alert_type, alert_msg in alerts %} - mailcow_alert_box('{{ alert_msg|raw }}', '{{ alert_type }}'); + mailcow_alert_box('{{ alert_msg|raw|e("js") }}', '{{ alert_type }}'); {% endfor %} // Confirm TFA modal