laptop and a wrench

Bug

The special character '&' is URL sanitized to 'amp' in ArcGIS Enterprise Sites on links within additional resources of a content item.

Portal for ArcGIS
Bug-ID-Nummer BUG-000159969
EingereichtJuly 19, 2023
Zuletzt geändertJune 5, 2024
Gilt fürPortal for ArcGIS
Gefunden in Version11.1
BetriebssystemWindows Server
BetriebssystemversionN/A
StatusWill Not Be Addressed

Zusätzliche Informationen

The matter at hand concerns a character that requires careful handling: the '&' symbol. It undergoes conversion for several important reasons: Preventing HTML Entity Injection: By converting the '&', the risk of HTML entity injection is reduced. This is crucial for maintaining the integrity and security of our web content. Ensuring JavaScript stability: The correct usage of the ampersand is paramount to avoiding issues with JavaScript. Incorrect utilization can lead to unexpected behaviors or script failures, and the approach safeguards against these scenarios. Mitigating harmful query parameters: The conversion also plays a role in thwarting the injection of malicious or harmful query parameters. This proactive measure helps maintain the reliability of data handling. It is notable that this might create some inconvenience. It is important to note that these sanitation rules are in place to provide a secure environment for all users. Respective understanding and cooperation in this matter are greatly appreciated.

Workaround

There is no workaround except for manually deleting from the link the 'amp' letters added automatically by the system.

Schritte zur Reproduzierung

Bug-ID: BUG-000159969

Software:

  • Portal for ArcGIS

Benachrichtigung erhalten, wenn sich der Status eines Bugs ändert

Esri Support App herunterladen

Weitere Informationen zu diesem Thema erkunden

Unterstützung durch ArcGIS-Experten anfordern

An den technischen Support wenden

Esri Support App herunterladen

Zu Download-Optionen wechseln