Excape HTML (where needed, for bootbox) (references #996)

This commit is contained in:
Bernd Bestel
2020-09-08 18:10:30 +02:00
parent 22434c85f0
commit 0df2590de2
19 changed files with 32 additions and 24 deletions

View File

@@ -77,7 +77,7 @@ $(".status-filter-message").on("click", function()
$("#delete-selected-shopping-list").on("click", function()
{
var objectName = $("#selected-shopping-list option:selected").text();
var objectName = SanitizeHtml($("#selected-shopping-list option:selected").text());
var objectId = $("#selected-shopping-list").val();
bootbox.confirm({
@@ -158,7 +158,7 @@ $(document).on('click', '#add-products-below-min-stock-amount', function(e)
$(document).on('click', '#clear-shopping-list', function(e)
{
bootbox.confirm({
message: __t('Are you sure to empty shopping list "%s"?', $("#selected-shopping-list option:selected").text()),
message: __t('Are you sure to empty shopping list "%s"?', SanitizeHtml($("#selected-shopping-list option:selected").text())),
closeButton: false,
buttons: {
confirm: {