summaryrefslogtreecommitdiffstats
path: root/config/initializers/10-patches.rb
diff options
context:
space:
mode:
authorJean-Philippe Lang <jp_lang@yahoo.fr>2012-08-13 19:05:42 +0000
committerJean-Philippe Lang <jp_lang@yahoo.fr>2012-08-13 19:05:42 +0000
commitd79bcc43690f1607dc7c87bea2007048a1950ec4 (patch)
treefbb64c1d0d343020540f833d5983e5b4a8cd59f3 /config/initializers/10-patches.rb
parent327660eb7f7e3e7339dd1fead1404bda10e09c13 (diff)
downloadredmine-d79bcc43690f1607dc7c87bea2007048a1950ec4.tar.gz
redmine-d79bcc43690f1607dc7c87bea2007048a1950ec4.zip
Fixed that text email templates are escaped (#11355).
git-svn-id: svn+ssh://rubyforge.org/var/svn/redmine/trunk@10205 e93f8b46-1217-0410-a6f0-8f06a7374b81
Diffstat (limited to 'config/initializers/10-patches.rb')
-rw-r--r--config/initializers/10-patches.rb35
1 files changed, 35 insertions, 0 deletions
diff --git a/config/initializers/10-patches.rb b/config/initializers/10-patches.rb
index e4a110cfa..c2d0a5fad 100644
--- a/config/initializers/10-patches.rb
+++ b/config/initializers/10-patches.rb
@@ -50,6 +50,41 @@ module ActionView
end
end
+# Do not HTML escape text templates
+module ActionView
+ class Template
+ module Handlers
+ class ERB
+ def call(template)
+ if template.source.encoding_aware?
+ # First, convert to BINARY, so in case the encoding is
+ # wrong, we can still find an encoding tag
+ # (<%# encoding %>) inside the String using a regular
+ # expression
+ template_source = template.source.dup.force_encoding("BINARY")
+
+ erb = template_source.gsub(ENCODING_TAG, '')
+ encoding = $2
+
+ erb.force_encoding valid_encoding(template.source.dup, encoding)
+
+ # Always make sure we return a String in the default_internal
+ erb.encode!
+ else
+ erb = template.source.dup
+ end
+
+ self.class.erb_implementation.new(
+ erb,
+ :trim => (self.class.erb_trim_mode == "-"),
+ :escape => template.identifier =~ /\.text/ # only escape HTML templates
+ ).src
+ end
+ end
+ end
+ end
+end
+
ActionView::Base.field_error_proc = Proc.new{ |html_tag, instance| html_tag || ''.html_safe }
require 'mail'