changeset 3998:6133e598f4b4

pull request: urlify PRs and fix javascript injection
author Mads Kiilerich <madski@unity3d.com>
date Thu, 13 Jun 2013 21:20:33 +0200
parents 156cb1cdd7ad
children e1ecc8622884
files rhodecode/templates/pullrequests/pullrequest_show.html
diffstat 1 files changed, 1 insertions(+), 1 deletions(-) [+]
line wrap: on
line diff
--- a/rhodecode/templates/pullrequests/pullrequest_show.html	Sat Jun 15 20:47:41 2013 +0200
+++ b/rhodecode/templates/pullrequests/pullrequest_show.html	Thu Jun 13 21:20:33 2013 +0200
@@ -81,7 +81,7 @@
               <label>${_('Description')}:</label>
           </div>
           <div class="input">
-              <div style="white-space:pre-wrap">${h.literal(c.pull_request.description)}</div>
+              <div style="white-space:pre-wrap">${h.urlify_commit(c.pull_request.description)}</div>
           </div>
          </div>
          <div class="field">