diff options
author | Evgeny Fadeev <evgeny.fadeev@gmail.com> | 2013-05-07 23:59:42 -0400 |
---|---|---|
committer | Evgeny Fadeev <evgeny.fadeev@gmail.com> | 2013-05-07 23:59:42 -0400 |
commit | a676a86b6b7a5737d4da4f59f71e037406f88d29 (patch) | |
tree | c937dec0997b7a961785f239e46c43a9e9135709 /askbot/templates | |
parent | 8ac806f3fd19e2cc08643560432b8bc2f99f6497 (diff) | |
download | askbot-a676a86b6b7a5737d4da4f59f71e037406f88d29.tar.gz askbot-a676a86b6b7a5737d4da4f59f71e037406f88d29.tar.bz2 askbot-a676a86b6b7a5737d4da4f59f71e037406f88d29.zip |
fixed some xss issues
Diffstat (limited to 'askbot/templates')
-rw-r--r-- | askbot/templates/users.html | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/askbot/templates/users.html b/askbot/templates/users.html index 5ab4c28a..14e07f7f 100644 --- a/askbot/templates/users.html +++ b/askbot/templates/users.html @@ -63,7 +63,7 @@ <div class="clearfix"></div> </div> {% if search_query %} - <p>{% trans %}users matching query {{search_query}}:{% endtrans %}</p> + <p>{% trans search_query=search_query|escape %}users matching query {{search_query}}:{% endtrans %}</p> {% endif %} {% if not users.object_list %} <p><span>{% trans %}Nothing found.{% endtrans %}</span></p> |