From a18b8397ffb64a34b2db191a9161095bc317450b Mon Sep 17 00:00:00 2001 From: Go MAEDA Date: Fri, 19 Mar 2021 04:42:43 +0000 Subject: [PATCH] Sanitize HTML tags in wiki page names (#33820). git-svn-id: http://svn.redmine.org/redmine/trunk@20829 e93f8b46-1217-0410-a6f0-8f06a7374b81 --- public/javascripts/application.js | 3 +++ 1 file changed, 3 insertions(+) diff --git a/public/javascripts/application.js b/public/javascripts/application.js index 0467d97db..431d67ae3 100644 --- a/public/javascripts/application.js +++ b/public/javascripts/application.js @@ -1187,6 +1187,9 @@ function inlineAutoComplete(element) { selectTemplate: function (wikiPage) { return '[[' + wikiPage.original.value + ']]'; }, + menuItemTemplate: function (wikiPage) { + return sanitizeHTML(wikiPage.original.label); + }, noMatchTemplate: function () { return ''; } -- 2.39.5