From: Sven Schöling Date: Tue, 25 Oct 2016 09:27:01 +0000 (+0200) Subject: drafts: html escaping für Vorlagen mit single quotes X-Git-Tag: release-3.5.4~1389 X-Git-Url: http://wagnertech.de/git?a=commitdiff_plain;h=47e46527ef56f7a10551c9da6ac25c4cf1012a5e;p=kivitendo-erp.git drafts: html escaping für Vorlagen mit single quotes --- diff --git a/templates/webpages/drafts/form.html b/templates/webpages/drafts/form.html index 031b0a17c..4777a7a61 100644 --- a/templates/webpages/drafts/form.html +++ b/templates/webpages/drafts/form.html @@ -12,7 +12,7 @@ [%- END %] [% L.hidden_tag('', FORM.id, id='new_draft_id') %] -[% 'Description' | $T8 %]: +[% 'Description' | $T8 %]: [% L.input_tag('new_draft_description', FORM.description) %] [% L.button_tag('kivi.Draft.save("' _ HTML.escape(SELF.module) _ '", "' _ HTML.escape(SELF.submodule) _ '")', LxERP.t8('Save draft')) %] [%- IF drafts_list.size %]