Commit
910362d5c7e105614ad912b3732ca163b0309529
Exists in
staging
and in
42 other branches
all_pending_tasks_api, api-articles-period, api_roles, caching-rails4, captcha_serpro_plugin, comments_permissions, content-manager-hostspot, elasticsearch, elasticsearch_api, elasticsearch_categories, elasticsearch_filter, elasticsearch_sort, elasticsearch_to_merge, elasticsearch_view, environment-exposes-api, export-comment-api, export-comment-paragraph, export_data, external_followers, federation-webfinger, federation_followers, federation_followers_backend, federation_oauth_provider, federation_webfinger, fix_event_date_issue, fix_notification_email, fix_string_downcase_and_upcase, follower_permition, json_cookie_serializer, login-captcha, master, master_profile_followers, oauth_external_login, oauth_login, private-scraps, private-scraps-rebase, production, production-vendorized, profile_api_improvements, tasks_keep_filter_params, user_mention, webfinger_server
Unsafe html creation on custom form plugin
(ActionItem2658)
| @@ -244,7 +244,7 @@ module FormsHelper |
| @@ -244,7 +244,7 @@ module FormsHelper |
244
| yearSuffix: #{datepicker_options[:year_suffix].to_json} |
244
| yearSuffix: #{datepicker_options[:year_suffix].to_json} |
245
| }) |
245
| }) |
246
| </script> |
246
| </script> |
247
| - " |
247
| + ".html_safe |
248
| result |
248
| result |
249
| end |
249
| end |
250
| |
250
| |