Merge pull request #23 from finnlabs/feature/rails3_escape_units

pull/6827/head
Hagen Schink 11 years ago
commit 12032c3836
  1. 2
      CHANGELOG.md
  2. 2
      lib/widget/table/report_table.rb

@ -1,5 +1,7 @@
# Changelog
* `#1020` fix XSS when displaying costs
## 0.0.1.pre6
* fix minor css alignment issue

@ -116,7 +116,7 @@ class Widget::Table::ReportTable < Widget::Table
opts = { :colspan => column.final_number(:column) }
opts.merge!(:class => "inner") if first
write(content_tag(:th, opts) do
"#{show_result(column)}" #{debug_fields(column)}
show_result(column) #{debug_fields(column)}
end)
end
if last_in_col

Loading…
Cancel
Save