Escape HTML in thread dropdown when using javascript
authorMagnus Hagander <magnus@hagander.net>
Sun, 25 Nov 2012 15:15:52 +0000 (16:15 +0100)
committerMagnus Hagander <magnus@hagander.net>
Sun, 25 Nov 2012 15:15:52 +0000 (16:15 +0100)
django/archives/mailarchives/templates/message.html

index 599d827ebb6ab7b4ed5a9eb3b028b9ff9a4a724c..4eef750a0b06c30347de47e4aaef4ee75f1cf831 100644 (file)
@@ -11,6 +11,7 @@ function onThreadSelect() {
 $(function(){
    $('select#thread_select').selectmenu({
       style:'dropdown',
+      escapeHtml:true,
       icons:[
          {find:'.hasatt', icon: 'ui-icon-document'},
       ]