erp5_json_editor: Sanitize and update description on schema
Remove forbidden properties when retrieve the properties from the schema. - template and options isn't part of json schema spec, so it isn't possible to use this feature globally. - template also could be used to call callbacks, so despite we block unsafe-eval, it still better remove it. - both were removed because it can lead to parameter injection, where by saving the form w/o editing anything, it changes the parameters, it adds non-visible values, which can up to some extend be a security risk. Update the description to display the "default" value as a hint, if it was provided into the schema.
Status | Job ID | Name | Coverage | ||||||
---|---|---|---|---|---|---|---|---|---|
External | |||||||||
failed |
#659560
external
|
ERP5.UnitTest-erp5-vifib |
04:04:40
|
||||||
failed |
#660316
external
|
SlapOS-Master.UnitTest-Master |
06:24:46
|
||||||
failed |
#660190
external
retried
|
SlapOS-Master.UnitTest-Master |
04:03:44
|
||||||
failed |
#660130
external
retried
|
SlapOS-Master.UnitTest-Master |
03:40:37
|
||||||
failed |
#660125
external
retried
|
SlapOS-Master.UnitTest-Master |
00:12:45
|
||||||
failed |
#660121
external
retried
|
SlapOS-Master.UnitTest-Master |
00:13:34
|
||||||
failed |
#660117
external
retried
|
SlapOS-Master.UnitTest-Master |
00:16:37
|
||||||
failed |
#660087
external
retried
|
SlapOS-Master.UnitTest-Master |
05:09:36
|
||||||
failed |
#660083
external
retried
|
SlapOS-Master.UnitTest-Master |
00:13:22
|
||||||
failed |
#660020
external
retried
|
SlapOS-Master.UnitTest-Master |
05:03:21
|
||||||
failed |
#659741
external
retried
|
SlapOS-Master.UnitTest-Master |
02:06:40
|
||||||
failed |
#659596
external
retried
|
SlapOS-Master.UnitTest-Master |
03:35:13
|
||||||