Commit 1145a3516c8407a069be0a77c34c4ae3a77974c8

Authored by Evandro Junior
1 parent 5b5b05f5

render escaped html

lib/proposals_discussion_plugin/topic_helper.rb
@@ -6,7 +6,7 @@ module ProposalsDiscussionPlugin::TopicHelper @@ -6,7 +6,7 @@ module ProposalsDiscussionPlugin::TopicHelper
6 6
7 content_tag(:div, ( 7 content_tag(:div, (
8 content_tag(:div, '', :class=>'topic-color', :style => "background-color: #{topic.color};") + 8 content_tag(:div, '', :class=>'topic-color', :style => "background-color: #{topic.color};") +
9 - content_tag(:h2, link_to(image_icon + content_tag(:span, topic.title), topic.view_url)) 9 + content_tag(:h2, link_to(image_icon + content_tag(:span, topic.title).html_safe, topic.view_url))
10 ), :class => 'topic-title') 10 ), :class => 'topic-title')
11 end 11 end
12 12
views/content_viewer/proposal.html.erb
1 <span class="created-at"> 1 <span class="created-at">
2 <span class="date"><%= show_date(proposal.published_at) %></span> 2 <span class="date"><%= show_date(proposal.published_at) %></span>
3 - <span class="author"><%= _(", by %s") % (proposal.author ? link_to(proposal.author_name, proposal.author_url) : proposal.author_name) %></span>  
4 - <span class="comments"><%= _(" - %s") % link_to_comments(proposal) %></span> 3 + <span class="author"><%= _(", by %s") % (proposal.author ? link_to(proposal.author_name, proposal.author_url).html_safe : proposal.author_name) %></span>
  4 + <span class="comments"><%= _(" - %s") % link_to_comments(proposal).html_safe %></span>
5 </span> 5 </span>
6 6
7 <div class="discussion"> 7 <div class="discussion">
@@ -17,7 +17,7 @@ @@ -17,7 +17,7 @@
17 </div> 17 </div>
18 18
19 <div class="body"> 19 <div class="body">
20 - <div class="content"><%= proposal.body %></div> 20 + <div class="content"><%= proposal.body.html_safe %></div>
21 </div> 21 </div>
22 22
23 <% if proposal.created_by == user && !proposal.published %> 23 <% if proposal.created_by == user && !proposal.published %>