diff options
Diffstat (limited to 'modules')
-rw-r--r-- | modules/search/search.go | 9 |
1 files changed, 5 insertions, 4 deletions
diff --git a/modules/search/search.go b/modules/search/search.go index 1c13f11f8f..db0c0a6168 100644 --- a/modules/search/search.go +++ b/modules/search/search.go @@ -6,6 +6,7 @@ package search import ( "bytes" + "html" gotemplate "html/template" "strings" @@ -75,17 +76,17 @@ func searchResult(result *indexer.RepoSearchResult, startIndex, endIndex int) (* closeActiveIndex := util.Min(result.EndIndex-index, len(line)) err = writeStrings(&formattedLinesBuffer, `<li>`, - line[:openActiveIndex], + html.EscapeString(line[:openActiveIndex]), `<span class='active'>`, - line[openActiveIndex:closeActiveIndex], + html.EscapeString(line[openActiveIndex:closeActiveIndex]), `</span>`, - line[closeActiveIndex:], + html.EscapeString(line[closeActiveIndex:]), `</li>`, ) } else { err = writeStrings(&formattedLinesBuffer, `<li>`, - line, + html.EscapeString(line), `</li>`, ) } |