diff options
author | Dmitriy Zaporozhets <dmitriy.zaporozhets@gmail.com> | 2013-10-31 16:35:06 +0200 |
---|---|---|
committer | Jacob Vosmaer <contact@jacobvosmaer.nl> | 2013-11-04 12:01:55 +0100 |
commit | 6d8b0bbb9639037080b334487dccbe8f209ddd88 (patch) | |
tree | 0f80aa7662769a735843854fc081813d9c4422be | |
parent | 8a5bf011ab4af5ce98ee91fd5bbcc5d8cc874e0e (diff) | |
download | gitlab-ce-6d8b0bbb9639037080b334487dccbe8f209ddd88.tar.gz |
Correctly escape search query
-rw-r--r-- | app/contexts/search_context.rb | 3 |
1 files changed, 2 insertions, 1 deletions
diff --git a/app/contexts/search_context.rb b/app/contexts/search_context.rb index 742ab025a28..ec814c4dde5 100644 --- a/app/contexts/search_context.rb +++ b/app/contexts/search_context.rb @@ -6,7 +6,8 @@ class SearchContext end def execute - query = Shellwords.shellescape(params[:search]) + query = params[:search] + query = Shellwords.shellescape(query) if query.present? return result unless query.present? |