From 3185234b4beae10488d06213dbc0d6cb90602b14 Mon Sep 17 00:00:00 2001 From: Bastien Le Querrec <blq@laquadrature.net> Date: Mon, 9 Nov 2020 22:51:41 +0100 Subject: [PATCH] consider update result message as HTML safe --- app/view/backend/banque.html | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/app/view/backend/banque.html b/app/view/backend/banque.html index 8e65c0a..4783c7e 100644 --- a/app/view/backend/banque.html +++ b/app/view/backend/banque.html @@ -2,8 +2,8 @@ <h2>Gestion banque</h2> <check if="{{@result}}"><p class="result">{{@result | raw}}</p></check> -<check if="{{@SESSION.error}}"><message messages="{{@SESSION.error}}" class="alert alert-danger"/></check> -<check if="{{@SESSION.message}}"><message messages="{{@SESSION.message}}" class="alert alert-danger" /></p></check> +<check if="{{@SESSION.error}}"><message messages="{{@SESSION.error| raw }}" class="alert alert-danger"/></check> +<check if="{{@SESSION.message}}"><message messages="{{@SESSION.message| raw }}" class="alert alert-danger" /></p></check> <section id="cbs"> <h3 >Mise à jour des dates d'expiration des CB</h3> -- GitLab