From d2cf8b51904420917a5f86986ce7c02e89935998 Mon Sep 17 00:00:00 2001 From: Neissi Torres Lima Date: Fri, 5 Sep 2014 15:44:47 -0300 Subject: Neissi / Duda - Escaping recipients on mail view --- web-ui/app/js/views/recipientListFormatter.js | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) (limited to 'web-ui/app/js/views') diff --git a/web-ui/app/js/views/recipientListFormatter.js b/web-ui/app/js/views/recipientListFormatter.js index 20afc6ed..68e6dbe1 100644 --- a/web-ui/app/js/views/recipientListFormatter.js +++ b/web-ui/app/js/views/recipientListFormatter.js @@ -20,7 +20,9 @@ define(function() { 'use strict'; Handlebars.registerHelper('formatRecipients', function (header) { function wrapWith(begin, end) { - return function (x) { return begin + x + end; }; + return function (x) { + return begin + Handlebars.Utils.escapeExpression(x) + end; + }; } var to = _.map(header.to, wrapWith('', '')); -- cgit v1.2.3