From 18f60a5cab1b00d3feeffaacb67f22f408a8712a Mon Sep 17 00:00:00 2001 From: =?utf8?q?Joshua=20R=C3=BCsweg?= Date: Fri, 7 Dec 2018 10:57:54 +0100 Subject: [PATCH] Work-around for a false-positive by Chrome's XSS auditor --- .../install/files/lib/acp/form/AdAddForm.class.php | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/wcfsetup/install/files/lib/acp/form/AdAddForm.class.php b/wcfsetup/install/files/lib/acp/form/AdAddForm.class.php index 74f8a684ef..c68ac981e0 100644 --- a/wcfsetup/install/files/lib/acp/form/AdAddForm.class.php +++ b/wcfsetup/install/files/lib/acp/form/AdAddForm.class.php @@ -241,4 +241,16 @@ class AdAddForm extends AbstractForm { } } } + + + /** + * @inheritDoc + */ + public function show() { + // work-around for a known Chrome bug that causes the XSS auditor + // to incorrectly detect JavaScript inside a textarea + @header('X-XSS-Protection: 0'); + + parent::show(); + } } -- 2.20.1