Code is removed instead of being escaped e.g. <script>alert('test')</script>

%3CLINGO-SUB%20id%3D%22lingo-sub-134547%22%20slang%3D%22en-US%22%3ECode%20is%20removed%20instead%20of%20being%20escaped%20e.g.%20%26amp%3Blt%3Bscript%26amp%3Bgt%3Balert('test')%26amp%3Blt%3B%2Fscript%26amp%3Bgt%3B%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-134547%22%20slang%3D%22en-US%22%3E%3CP%3EI%20just%20realized%20that%20javascript%20code%20snippets%20are%20removed%20from%20a%26nbsp%3Bcomments%20on%20a%20task%20(%26nbsp%3Binstead%20of%20being%20escaped).%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3ESo%20i%20just%20made%20a%20undeletable%20post%3B%20which%20makes%20absolute%20no%20sense%20-%20without%20even%20a%20warning.%3C%2FP%3E%0A%3CP%3ECould%20you%20fix%20that%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-134548%22%20slang%3D%22en-US%22%3ERe%3A%20Code%20is%20removed%20instead%20of%20being%20escaped%20e.g.%20%26amp%3Blt%3Bscript%26amp%3Bgt%3Balert('test')%26amp%3Blt%3B%2Fscript%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-134548%22%20slang%3D%22en-US%22%3Eamazing%2C%20its%20here%20also%20done%20wrong%5E%5E.%3C%2FLINGO-BODY%3E
New Contributor

I just realized that javascript code snippets are removed from a comments on a task ( instead of being escaped).

 

So i just made a undeletable post; which makes absolute no sense - without even a warning.

Could you fix that?

1 Reply
amazing, its here also done wrong^^.