]> source.dussan.org Git - redmine.git/commitdiff
Sanitize HTML tags in wiki page names (#33820).
authorGo MAEDA <maeda@farend.jp>
Fri, 19 Mar 2021 04:42:43 +0000 (04:42 +0000)
committerGo MAEDA <maeda@farend.jp>
Fri, 19 Mar 2021 04:42:43 +0000 (04:42 +0000)
git-svn-id: http://svn.redmine.org/redmine/trunk@20829 e93f8b46-1217-0410-a6f0-8f06a7374b81

public/javascripts/application.js

index 0467d97db8600c564ba12c8276252d52fd286418..431d67ae32015af782fabd8235c3ef059c29f1c4 100644 (file)
@@ -1187,6 +1187,9 @@ function inlineAutoComplete(element) {
           selectTemplate: function (wikiPage) {
             return '[[' + wikiPage.original.value + ']]';
           },
+          menuItemTemplate: function (wikiPage) {
+            return sanitizeHTML(wikiPage.original.label);
+          },
           noMatchTemplate: function () {
             return '<span style:"visibility: hidden;"></span>';
           }