Commit 6e9b3b36b981544ecb2b4516ff60a0b31fb2a219
Committed by
Rodrigo Souto
1 parent
75ebbf5b
Exists in
master
and in
29 other branches
Fix xss issue at body_classes
Showing
1 changed file
with
1 additions
and
1 deletions
Show diff stats
app/views/layouts/application-ng.rhtml
@@ -22,7 +22,7 @@ | @@ -22,7 +22,7 @@ | ||
22 | DEFAULT_LOADING_MESSAGE = <%="'#{ _('loading...') }'" %>; | 22 | DEFAULT_LOADING_MESSAGE = <%="'#{ _('loading...') }'" %>; |
23 | </script> | 23 | </script> |
24 | </head> | 24 | </head> |
25 | - <body class="<%= body_classes %>"> | 25 | + <body class="<%= h body_classes %>"> |
26 | <a href="#content" id="link-go-content"><span><%= _("Go to the content") %></span></a> | 26 | <a href="#content" id="link-go-content"><span><%= _("Go to the content") %></span></a> |
27 | 27 | ||
28 | <%= | 28 | <%= |