cross
New Foswiki release 2.1.6 is available with important security fixes.
Sourceforge foswiki email lists being discontinued. Subscribe to the new Foswiki announce and discuss lists at MailingLists
You are here: Foswiki>Tasks Web>Item406 (08 Jan 2009, KwangErnLiew)Edit Attach

Item406: WebSearch does not work with quoted word strings.

pencil
Priority: Urgent
Current State: Closed
Released In: 1.0.0
Target Release: patch
Applies To: Engine
Component:
Branches:
Reported By: Foswiki:Main.KennethLavrsen
Waiting For: Main.KennethLavrsen
Last Change By: KwangErnLiew
WebSearch does not work with quoted word strings.

The reason is that URLPARAM inside a SEARCH requires that encode="quote" is used.

Note that this is not triggered by the spec change of URLPARAM into using safe as default. Turning URLPARAM encoding off does not solve this.

You must use encode="quote".

This change is part of the XSS fix but I am putting it on a separate bug item so it gets visible in release note that the bug is fixed.

-- KennethLavrsen - 07 Dec 2008

ItemTemplate edit

Summary WebSearch does not work with quoted word strings.
ReportedBy Foswiki:Main.KennethLavrsen
Codebase
SVN Range SVN 1195: Foswiki-0.9.0, Fri, 05 Dec 2008, build 1179
AppliesTo Engine
Component
Priority Urgent
CurrentState Closed
WaitingFor KennethLavrsen
Checkins distro:79bf52be733d
TargetRelease patch
ReleasedIn 1.0.0
Topic revision: r3 - 08 Jan 2009, KwangErnLiew - This page was cached on 02 May 2018 - 07:06.

The copyright of the content on this website is held by the contributing authors, except where stated elsewhere. See Copyright Statement. Creative Commons License