For header() calls that happen outside of Cake's scope, we should wrap them in a function to ensure proper escaping. This is currently done on a case-by-case basis, but for new header() calls we should consider centralizing.
Per morgamic - he wants it closed.
Status: NEW → RESOLVED
Last Resolved: 11 years ago
Resolution: --- → WONTFIX
Nice job everyone.
Status: RESOLVED → VERIFIED
(In reply to comment #2) > Nice job everyone. That's what.... nevermind.
Product: addons.mozilla.org → addons.mozilla.org Graveyard
You need to log in before you can comment on or make changes to this bug.