From d6415e07e13d4fb361f698dc9590ce4dfb44cff8 Mon Sep 17 00:00:00 2001 From: Pavel Dohnal Date: Wed, 4 Dec 2024 10:10:28 +0100 Subject: [PATCH] Sanitise post id before constructing URL Fixes: https://github.com/mailpoet/mailpoet/security/code-scanning/17 --- mailpoet/assets/js/src/newsletters/send.tsx | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/mailpoet/assets/js/src/newsletters/send.tsx b/mailpoet/assets/js/src/newsletters/send.tsx index d16acfd50e..519c981c10 100644 --- a/mailpoet/assets/js/src/newsletters/send.tsx +++ b/mailpoet/assets/js/src/newsletters/send.tsx @@ -874,7 +874,7 @@ class NewsletterSendComponent extends Component< MailPoet.FeaturesController.isSupported( 'gutenberg_email_editor', ) && wpPostId - ? MailPoet.getBlockEmailEditorUrl(wpPostId) + ? MailPoet.getBlockEmailEditorUrl(Number(wpPostId)) : `?page=mailpoet-newsletter-editor&id=${Number( this.props.params.id, )}`