Security Advisories (1)
CPANSA-Jifty-2011-01 (2011-03-17)

The path as passed in the fragment request data structure was used verbatim in the dispatcher and other locations. This possibly allowed requests to walk around ACLs by requesting '/some/safe/place/../../../dangerous' as a fragment.

NAME

Jifty::Web::Form::Field::Textarea - Add a multiline text field to your forms

METHODS

accessors

Provide rows and cols accessors, in addition to Jifty::Web::Form::Field's default accessors.

render_widget

Renders the textarea widget.

handler_allowed HANDLER_NAME

Returns 1 if the handler (e.g. onclick) is allowed. Undef otherwise.