</tbody>
<%= table_pagination(@filter.pagination, :colspan => colspan) { |label, page_id|
- link_to(label, :action => 'index', :qualifier => @qualifier, :asc => @filter.criteria[:asc], :page => page_id)
+ link_to(label, :action => 'index', :qualifier => h(@qualifier), :asc => h(@filter.criteria[:asc]), :page => page_id)
}
-%>
</table>
</div>
-<% end %>
\ No newline at end of file
+<% end %>
message_params = params['mp'] || []
button_key = params[:bk] || title_key
%>
-<form id="confirm-form" method="post" action="<%= Api::Utils.absolute_to_relative_url(params[:url]) -%>">
+<form id="confirm-form" method="post" action="<%= Api::Utils.absolute_to_relative_url(h(params[:url])) -%>">
<fieldset>
<div class="modal-head">
<h2><%= h message title_key -%></h2>
<a href="#" onclick="return closeModalWindow()" id="confirm-cancel"><%= h message('cancel') -%></a>
</div>
</fieldset>
-</form>
\ No newline at end of file
+</form>
<tr class="<%= clazz -%>" id="row_<%= index -%>_<%= row_index -%>">
<td nowrap>
<% if resource.source_code? %>
- <a href="<%= url_for :controller => 'resource', :action => 'index', :id => resource.key, :period => params[:period], :metric => @metric ? @metric.id : nil,
+ <a href="<%= url_for :controller => 'resource', :action => 'index', :id => resource.key, :period => @period, :metric => @metric ? @metric.id : nil,
:rule => @rule ? @rule.id : @severity, :display_title => 'true' -%>"
onclick="window.open(this.href,'resource-<%= resource.key.parameterize -%>','height=800,width=900,scrollbars=1,resizable=1');return false;"
id="popup-<%= resource.key.parameterize -%>"
<div id="accordion-panel"/>
-<%= render :partial => 'footer' -%>
\ No newline at end of file
+<%= render :partial => 'footer' -%>