Sanitize untrusted text in MultiKindValidator

This MR fixes a security bug; exploit with RCE.

This is a similar change required for another validator class

Merge request reports

Loading