aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authormkanat%bugzilla.org <>2008-11-26 00:57:54 +0000
committermkanat%bugzilla.org <>2008-11-26 00:57:54 +0000
commit1bcc8fbba049efb845abd6a2d569cce1adfcdba0 (patch)
tree95ce42c87289e2726f92bf98f173f308d29f8b38
parentBug 465817: The sudo session UI lets you select several users to impersonate ... (diff)
downloadbugzilla-1bcc8fbba049efb845abd6a2d569cce1adfcdba0.tar.gz
bugzilla-1bcc8fbba049efb845abd6a2d569cce1adfcdba0.tar.bz2
bugzilla-1bcc8fbba049efb845abd6a2d569cce1adfcdba0.zip
Bug 466398: <select> is not escaped in the API documentation
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat
-rw-r--r--docs/lib/Pod/Simple/HTMLBatch/Bugzilla.pm1
1 files changed, 1 insertions, 0 deletions
diff --git a/docs/lib/Pod/Simple/HTMLBatch/Bugzilla.pm b/docs/lib/Pod/Simple/HTMLBatch/Bugzilla.pm
index 06c76c678..56896a9b7 100644
--- a/docs/lib/Pod/Simple/HTMLBatch/Bugzilla.pm
+++ b/docs/lib/Pod/Simple/HTMLBatch/Bugzilla.pm
@@ -70,6 +70,7 @@ sub _write_contents_middle {
my $path = join( "/", '.', esc(@{$e->[3]}) )
. $Pod::Simple::HTML::HTML_EXTENSION;
my $description = $self->{bugzilla_desc}->{$name} || '';
+ $description = esc($description);
my $html = <<END_HTML;
<tr class="$even_or_odd">
<th><a href="$path">$name</a></th>