Add validation to search facets to improve UX and eliminate XSS vulnerability #1271
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Issue #CIVIC-3513
hook_facet_items_alter
in order to runfilter_xss
on themsearch/<taxonomy_field>/<format>-<tid>
whentaxonomy_field
is either:Acceptance Criteria
search/type/notvalid
should return a 404 for everything for everything but but valid content typessearch/field_tags/notvalid
should return a 404 for everything for everything but but valid term values for tagssearch/field_topic/notvalid
should return a 404 for everything but for everything but valid term values for topicssearch/field_resources%253Afield_format/notvalid
should return a 404 for everything but valid term values for formatssearch/field_license/notvalid
should return a 404 for everything but valid license occurances