Skip to content

Commit 2a54f27

Browse files
committed
[KNOWAGE-6438] - Added escaping for doc description special chars
1 parent 9dec45c commit 2a54f27

File tree

1 file changed

+2
-2
lines changed
  • knowagecockpitengine/src/main/webapp/WEB-INF/jsp/commons/angular

1 file changed

+2
-2
lines changed

knowagecockpitengine/src/main/webapp/WEB-INF/jsp/commons/angular/sbiModule.jspf

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ along with this program. If not, see <http://www.gnu.org/licenses/>.
1919
<%@page import="org.json.JSONObject"%>
2020
<%@page import="java.util.regex.Matcher"%>
2121
<%@page import="java.util.regex.Pattern"%>
22-
22+
<%@page import="org.apache.commons.lang.StringEscapeUtils"%>
2323
<script>
2424

2525
var sbiM=angular.module('sbiModule',["ngSanitize"]);
@@ -851,7 +851,7 @@ sbiM.factory('sbiModule_cockpitDocument', function(){
851851
docId: <%= docId %>,
852852
docLabel: '<%= docLabel %>',
853853
docName: '<%= docName.replaceAll(Pattern.quote("'"), Matcher.quoteReplacement("\\'")) %>',
854-
docDescription: '<%= docDescription %>'
854+
docDescription: '<%= StringEscapeUtils.escapeJavaScript(docDescription) %>'
855855
}
856856
});
857857

0 commit comments

Comments
 (0)