From 7f3c6e0ce9b41142cf2707af100992acdce059df Mon Sep 17 00:00:00 2001 From: Lukasz Janyst <ljanyst@cern.ch> Date: Sat, 05 Mar 2011 13:10:55 +0000 Subject: ui-diff.c: avoid html injection When path-filtering was used in commit-view, the path filter was included without proper html escaping. This patch closes the hole. Signed-off-by: Lukasz Janyst <ljanyst@cern.ch> Signed-off-by: Lars Hjemli <hjemli@gmail.com> --- (limited to 'html.c') -- cgit v0.9.0.2