Page MenuHomeMiraheze

A word cloud extension request
Open, NormalPublic


We would like to have this extension in our wiki, or a similar one that does the job:


Event Timeline

Reception123 added subscribers: John, labster, Samwilson.

Will need to be security reviewed.

Void added a comment.Feb 13 2019, 14:37

Isn't that resolved by using htmlspecialchars on line 164, as that is what defines $minCountInput?

@Void no you could still do things like this:

min_count = foo

to get a database error (or worse, probably).

I've made a patch for this if anyone wants to review it:

(Thanks to Reception123 for relaying my message earlier; I was locked out of Phabricator here.)