Merge pull request #27 from shivrai/fix/escape_html

Enable HTML escaping for code segments
This commit is contained in:
John Washam
2017-07-04 09:46:56 -07:00
committed by GitHub
2 changed files with 2 additions and 2 deletions

View File

@@ -57,7 +57,7 @@
{% if card.type == 1 %} {% if card.type == 1 %}
{{ card.back|replace("\n", "<br />")|safe }} {{ card.back|replace("\n", "<br />")|safe }}
{% else %} {% else %}
<pre><code>{{ card.back|safe }}</code></pre> <pre><code>{{ card.back|escape }}</code></pre>
{% endif %} {% endif %}
</td> </td>
</tr> </tr>

View File

@@ -47,7 +47,7 @@
</div> </div>
{% endif %} {% endif %}
{% else %} {% else %}
<pre><code>{{ card.back|safe }}</code></pre> <pre><code>{{ card.back|escape }}</code></pre>
{% endif %} {% endif %}
</div> </div>
</div> </div>