Changeset 126 in bookmarks for trunk/lib/Bookmarks


Ignore:
Timestamp:
07/15/16 16:36:51 (8 years ago)
Author:
peter
Message:

HTML-escape the bookmark resource title or URI in the list display.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/lib/Bookmarks/list_core.tt

    r119 r126  
    55        (<a href="[% resource.id %]" class="edit-bookmark">Edit</a>) 
    66      </span> 
    7       <a href="[% resource.uri | html %]" title="[% resource.title | html %] ([% resource.tags.join(', ') %])">[% resource.title or resource.uri %]</a> 
     7      <a href="[% resource.uri | html %]" title="[% resource.title | html %] ([% resource.tags.join(', ') %])">[% ( resource.title or resource.uri ) | html %]</a> 
    88      <div class="tags"> 
    99        [% FOREACH tag IN resource.tags %] 
Note: See TracChangeset for help on using the changeset viewer.