Browse Source

Sanitize caption used in Grid header

Cherry pick of https://github.com/vaadin/framework/pull/11644
tags/7.7.21
Tatu Lund 4 years ago
parent
commit
ca3af82272
1 changed files with 2 additions and 0 deletions
  1. 2
    0
      server/src/main/java/com/vaadin/ui/Grid.java

+ 2
- 0
server/src/main/java/com/vaadin/ui/Grid.java View File

@@ -38,6 +38,7 @@ import java.util.Set;
import java.util.logging.Level;
import java.util.logging.Logger;

import org.jsoup.Jsoup;
import org.jsoup.nodes.Attributes;
import org.jsoup.nodes.Element;
import org.jsoup.select.Elements;
@@ -3424,6 +3425,7 @@ public class Grid extends AbstractFocusable implements SelectionNotifier,
if (caption == null) {
caption = ""; // Render null as empty
}
caption = Jsoup.parse(caption).text();
state.headerCaption = caption;

HeaderRow row = grid.getHeader().getDefaultRow();

Loading…
Cancel
Save