HTML is not being properly escaped
Reported by Marnen Laibow-Koser | September 9th, 2011 @ 04:56 PM
Many views (notably events/map) are not escaping HTML properly, due to the way this changed in Rails 3. I need to fix this.
Comments and changes to this ticket
-
Marnen Laibow-Koser September 9th, 2011 @ 04:58 PM
- State changed from new to open
Working on this.
-
Marnen Laibow-Koser September 9th, 2011 @ 06:33 PM
The escaping is no big deal, but the map JavaScript tag is also breaking due to a problem in the ym4r_gm plugin. There is a Rails-3-compatible ym4r_gm gem available, but it's got some problems with Ruby 1.8.7. Trying to see if 1.9.2 will work (see #58).
-
Marnen Laibow-Koser September 9th, 2011 @ 06:38 PM
- State changed from open to hold
Putting on hold till we see how #58 goes.
-
Marnen Laibow-Koser September 9th, 2011 @ 08:58 PM
- State changed from hold to open
Reopening now that #58 is done and we're on Ruby 1.9!
-
Marnen Laibow-Koser September 9th, 2011 @ 09:24 PM
- State changed from open to resolved
- Tag changed from bug, html, rails3, upgrade to bug, html, rails3, upgrade, v0.3.1
The gem still doesn't work properly, but I was able to hack the plugin. Closing; will be in v0.3.1.
-
Marnen Laibow-Koser September 9th, 2011 @ 09:25 PM
(from [a2bccf86126d904444434709073bf9fab5f32061]) Remove obsolete method call in plugin. [#57] https://github.com/marnen/quorum2/commit/a2bccf86126d90444443470907...
Please Sign in or create a free account to add a new ticket.
With your very own profile, you can contribute to projects, track your activity, watch tickets, receive and update tickets through your email and much more.
Create your profile
Help contribute to this project by taking a few moments to create your personal profile. Create your profile ยป
<p>This is the issue tracker for the Quorum calendar system. Also see our <a href="http://github.com/marnen/quorum2">Github repository</a> and our <a href="http://quorum2.sourceforge.net">project website</a>.</p>
<p>Please tag bug reports with <strong>bug</strong> and feature requests with <strong>feature</strong>. Use additional descriptive tags as necessary.</p>