a5e08f7bcc
I installed the rails_xss plugin, for the main purpose of seeing what will break with Rails 3.0 (where the behaviour of the plugin is the default). I think I've fixed everything, but let me know if you see stuff that is HTML-escaped, which shouldn't be. As a side benefit, we now use Erubis, rather than ERB, to render templates. They tell me it's faster ...
8 lines
202 B
Ruby
8 lines
202 B
Ruby
unless $gems_rake_task
|
|
if Rails.version <= "2.3.7"
|
|
$stderr.puts "rails_xss requires Rails 2.3.8 or later. Please upgrade to enable automatic HTML safety."
|
|
else
|
|
require 'rails_xss'
|
|
end
|
|
end
|