Skip to content

Commit 45fdf10

Browse files
authored
Merge pull request #31 from jkraemer/fix/footnote-html-escape
2 parents 1d88529 + fc8245a commit 45fdf10

File tree

2 files changed

+4
-4
lines changed

2 files changed

+4
-4
lines changed

lib/wiki_extensions_div_macro.rb

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -22,8 +22,8 @@ module WikiExtensionsDivMacro
2222
" !{{div_start_tag(id_name, class_name)}}"
2323
macro :div_start_tag do |obj, args|
2424
o = '<div>' if args.length == 0
25-
o = '<div id="' + args[0].strip + '">' if args.length == 1
26-
o = '<div id="' + args[0].strip + '" class="' + args[1].strip + '">' if args.length == 2
25+
o = '<div id="' + h(args[0].strip) + '">' if args.length == 1
26+
o = '<div id="' + h(args[0].strip) + '" class="' + h(args[1].strip) + '">' if args.length == 2
2727
o.html_safe
2828
end
2929
end

lib/wiki_extensions_footnote.rb

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@ def WikiExtensionsFootnote.preview_page
3939

4040
o = ""
4141
o << word
42-
o << '<a href="#wiki_extensins_fn_' +"#{data[:footnotes].length}" + '" class="wiki_extensions_fn" title="' + description + '" name="wiki_extensins_fn_src_' +"#{data[:footnotes].length}" + '">'
42+
o << '<a href="#wiki_extensins_fn_' +"#{data[:footnotes].length}" + '" class="wiki_extensions_fn" title="' + h(description) + '" name="wiki_extensins_fn_src_' +"#{data[:footnotes].length}" + '">'
4343
o << "*#{data[:footnotes].length}"
4444
o << '</a>'
4545
return o.html_safe
@@ -60,7 +60,7 @@ def WikiExtensionsFootnote.preview_page
6060
cnt = 0
6161
data[:footnotes].each {|fn|
6262
cnt += 1
63-
o << '<li><span class="wiki_extensions_fn">'+ "*#{cnt}</span> " +'<a name="wiki_extensins_fn_' + "#{cnt}" + '" href="#wiki_extensins_fn_src_' + "#{cnt}" + '"' + ">#{fn['word']}</a>:#{fn['description']}</li>"
63+
o << '<li><span class="wiki_extensions_fn">'+ "*#{cnt}</span> " +'<a name="wiki_extensins_fn_' + "#{cnt}" + '" href="#wiki_extensins_fn_src_' + "#{cnt}" + '"' + ">#{fn['word']}</a>:#{h fn['description']}</li>"
6464
}
6565
o << '</ul>'
6666
o << '</div>'

0 commit comments

Comments
 (0)