From: Julien Lancelot Date: Mon, 22 Dec 2014 14:45:22 +0000 (+0100) Subject: SSF-26 Cross-Site Scripting on Manual Metrics X-Git-Tag: 4.5.2~10 X-Git-Url: https://source.dussan.org/?a=commitdiff_plain;h=1990f83bcc2c7999cb4fe78ab1589bc6941bc6dc;p=sonarqube.git SSF-26 Cross-Site Scripting on Manual Metrics --- diff --git a/server/sonar-web/src/main/webapp/WEB-INF/app/views/metrics/index.html.erb b/server/sonar-web/src/main/webapp/WEB-INF/app/views/metrics/index.html.erb index d308a1f9161..9aa9b6519fd 100644 --- a/server/sonar-web/src/main/webapp/WEB-INF/app/views/metrics/index.html.erb +++ b/server/sonar-web/src/main/webapp/WEB-INF/app/views/metrics/index.html.erb @@ -38,8 +38,8 @@ <%= metric.key -%> <%= h metric.short_name -%> <%= h metric.description -%> - <%= metric.domain -%> - <%= metric.value_type_name -%> + <%= h metric.domain -%> + <%= h metric.value_type_name -%> <% if is_admin? %> Edit