Fix a regression with displaying diff viewer file entries.

Review Request #3820 — Created Jan. 30, 2013 and submitted

Information

Review Board
release-1.7.x

Reviewers

Fix a regression with displaying diff viewer file entries.

The "Files Changed" list in the diff viewer broke with Windows-style
paths. A previous change was made to fix a JavaScript injection issue,
but that caused some escaping issues when using backslashes. We now
escape both HTML and JavaScript.
Added some entries with backslashes, and added one with a <script>alert('...')</script>.
All were escaped as expected.
reviewbot
  1. This is a review from Review Bot.
      Tool: PEP8 Style Checker
      Processed Files:
      Ignored Files:
        reviewboard/templates/diffviewer/changeindex_entry.html
    
    
  2. 
      
mike_conley
  1. Ship It!
  2. 
      
chipx86
Review request changed

Status: Closed (submitted)

Change Summary:

Pushed to release-1.7.x (7624aeeff77dd019c40915410a5d81b7c55752ae)
Loading...