Fix security issue with markdown, thanks to @simhnna

This commit is contained in:
James Cole
2018-04-04 19:14:47 +02:00
parent 73fee4eb6b
commit 3819de4e74
5 changed files with 27 additions and 11 deletions

View File

@@ -238,7 +238,7 @@ class BillController extends Controller
$overallAverage = $repository->getOverallAverage($bill);
$manager = new Manager();
$manager->setSerializer(new DataArraySerializer());
$manager->parseIncludes(['attachments']);
$manager->parseIncludes(['attachments','notes']);
// Make a resource out of the data and
$parameters = new ParameterBag();