mirror of
https://github.com/Combodo/iTop.git
synced 2026-04-23 10:38:45 +02:00
N°1737 Fix tags sanitization in search criteria
This commit is contained in:
@@ -760,7 +760,8 @@ $(function()
|
||||
var aValues = [];
|
||||
for(var iValueIdx in aRawValues)
|
||||
{
|
||||
aValues.push(aRawValues[iValueIdx].label);
|
||||
var sEscapedLabel = $('<div />').text(aRawValues[iValueIdx].label).html();
|
||||
aValues.push(sEscapedLabel);
|
||||
}
|
||||
|
||||
return aValues.join(', ');
|
||||
|
||||
@@ -829,10 +829,11 @@ $(function()
|
||||
// - Make a jQuery element for a list item
|
||||
_makeListItemElement: function(sLabel, sValue, bInitChecked, bInitHidden)
|
||||
{
|
||||
var sEscapedLabel = $('<div />').text(sLabel).html();
|
||||
var oItemElem = $('<div></div>')
|
||||
.addClass('sfc_opc_mc_item')
|
||||
.attr('data-value-code', sValue)
|
||||
.append('<label><input type="checkbox" value="'+sValue+'"/>'+sLabel+'</label>');
|
||||
.append('<label><input type="checkbox" value="'+sValue+'"/>'+sEscapedLabel+'</label>');
|
||||
|
||||
if(bInitChecked === true)
|
||||
{
|
||||
|
||||
Reference in New Issue
Block a user