forked from fixin.me/fixin.me
sanitize() flash messages
This commit is contained in:
@@ -21,7 +21,7 @@
|
|||||||
<div class="flashes">
|
<div class="flashes">
|
||||||
<% flash.each do |entry, message| %>
|
<% flash.each do |entry, message| %>
|
||||||
<div class="flash <%= entry %>">
|
<div class="flash <%= entry %>">
|
||||||
<div><%= message %></div>
|
<div><%= sanitize message %></div>
|
||||||
<button onclick="this.parentElement.style.display='none';">×</button>
|
<button onclick="this.parentElement.style.display='none';">×</button>
|
||||||
</div>
|
</div>
|
||||||
<% end %>
|
<% end %>
|
||||||
|
|||||||
Reference in New Issue
Block a user