Tim Abbott
a2767e8c50
CVE-2020-14194: Use noopener/noreferrer for external links.
...
We fixed the main issue of this form in CVE-2020-9444, but the audit
done at that time only included links found in rendered_markdown; this
change completes our audit for links with target=_blank anywhere in
the codebase.
2020-06-16 23:35:39 -07:00
Joao Mauricio Carvalho
86d507db05
settings: Change username to `bot email` in bot settings HTML.
...
This is for consistency with how this value appears in other places in
the UI.
Fixes : #13162 .
2019-09-23 15:55:25 -07:00
Anders Kaseorg
0c565f50be
templates: Use upstream Handlebars partials syntax.
...
Signed-off-by: Anders Kaseorg <anders@zulipchat.com>
2019-07-12 21:11:14 -07:00
Anders Kaseorg
3c3471b720
templates: Rename *.handlebars ↦ *.hbs and - ↦ _.
...
Tweaked by tabbott to avoid accidentally disabling the linter for
handlebars templates.
Signed-off-by: Anders Kaseorg <anders@zulipchat.com>
2019-07-12 21:11:03 -07:00