mirror of
https://github.com/openfoodfoundation/openfoodnetwork
synced 2026-02-27 01:43:22 +00:00
sanitize long_description html before injection
This commit is contained in:
@@ -42,7 +42,9 @@ module Admin
|
||||
end
|
||||
|
||||
def admin_inject_enterprise_long_description
|
||||
render partial: "admin/json/injection_ams", locals: {ngModule: 'admin.enterprises', name: 'longDescription', json: "'#{@enterprise.long_description.to_s}'"}
|
||||
# Clean line breaks and quotes.
|
||||
long_description = @enterprise.long_description.gsub("\r\n", "<br />").gsub("\"", """).gsub("'","'")
|
||||
render partial: "admin/json/injection_ams", locals: {ngModule: 'admin.enterprises', name: 'longDescription', json: "'#{long_description}'"}
|
||||
end
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user