a5e08f7bcc
I installed the rails_xss plugin, for the main purpose of seeing what will break with Rails 3.0 (where the behaviour of the plugin is the default). I think I've fixed everything, but let me know if you see stuff that is HTML-escaped, which shouldn't be. As a side benefit, we now use Erubis, rather than ERB, to render templates. They tell me it's faster ...
9 lines
211 B
Plaintext
9 lines
211 B
Plaintext
$ erubis -xE PrintOut example.eruby
|
|
print '<div>
|
|
'; for item in list
|
|
print ' <p>'; print(( item ).to_s); print '</p>
|
|
<p>'; print Erubis::XmlHelper.escape_xml( item ); print '</p>
|
|
'; end
|
|
print '</div>
|
|
';
|