From 6a4114e842aa2e4850abcc4cce797c08d711db50 Mon Sep 17 00:00:00 2001 From: Toshi MARUYAMA Date: Tue, 2 Aug 2011 13:10:59 +0000 Subject: [PATCH] HTML escape at app/views/projects/list_members.rhtml. git-svn-id: svn+ssh://rubyforge.org/var/svn/redmine/trunk@6380 e93f8b46-1217-0410-a6f0-8f06a7374b81 --- app/views/projects/list_members.rhtml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/views/projects/list_members.rhtml b/app/views/projects/list_members.rhtml index 7f2ae3795..04de16044 100644 --- a/app/views/projects/list_members.rhtml +++ b/app/views/projects/list_members.rhtml @@ -4,7 +4,7 @@ <% members = @members.group_by {|m| m.role } %> <% members.keys.sort{|x,y| x.position <=> y.position}.each do |role| %> -

<%= role.name %>

+

<%= h(role.name) %>