You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
To be able to better describe projects and activities it would be nice to have an option to activate Markdown in comments of both of this record types. Currently all formating within these comments is ignored, even newlines to at least have paragraphes are skipped.
I read the statement about possible security risks in the documentation. Even if I can't see the risk: it would be nice if this feature could be enabled as an option for installations where security issues are no problem.
The text was updated successfully, but these errors were encountered:
The used Markdown parser does not apply sanitization, so you could potentially insert javascript code, which could again potentially lead to security issues ... always assuming that you can't trust the user.
This thread has been automatically locked since there has not been any recent activity after it was closed. Please open a new issue for related bugs. If you use Kimai on a daily basis, please consider donating to support further development of Kimai.
lockbot
locked and limited conversation to collaborators
Jul 23, 2019
Sign up for freeto subscribe to this conversation on GitHub.
Already have an account?
Sign in.
To be able to better describe projects and activities it would be nice to have an option to activate Markdown in comments of both of this record types. Currently all formating within these comments is ignored, even newlines to at least have paragraphes are skipped.
I read the statement about possible security risks in the documentation. Even if I can't see the risk: it would be nice if this feature could be enabled as an option for installations where security issues are no problem.
The text was updated successfully, but these errors were encountered: