Commit 2c797eb94f26e562ca02df655f2a4684183f9e9d
1 parent
7a21e469
Enable html_escape for code blocks highlighted in markdown
Signed-off-by: Dmitriy Zaporozhets <dmitriy.zaporozhets@gmail.com>
Showing
1 changed file
with
1 additions
and
1 deletions
 
Show diff stats
lib/redcarpet/render/gitlab_html.rb
| ... | ... | @@ -24,7 +24,7 @@ class Redcarpet::Render::GitlabHTML < Redcarpet::Render::HTML | 
| 24 | 24 | |
| 25 | 25 | <div class="highlighted-data #{h.user_color_scheme_class}"> | 
| 26 | 26 | <div class="highlight"> | 
| 27 | - <pre><code class="#{language}">#{code}</code></pre> | |
| 27 | + <pre><code class="#{language}">#{h.html_escape(code)}</code></pre> | |
| 28 | 28 | </div> | 
| 29 | 29 | </div> | 
| 30 | 30 | ... | ... |