summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorPhil Hughes <me@iamphill.com>2016-04-22 14:32:14 +0100
committerPhil Hughes <me@iamphill.com>2016-04-22 14:32:14 +0100
commit83adcf19b77898d3033500920973ed73ceb7c3c0 (patch)
treef01b4ff3d0e1e43b63a6d428e1087ff221effe64
parentd5398e9656c1174d4d5be5a8cdad2a26d7587a27 (diff)
downloadgitlab-ce-escape-label-title.tar.gz
Escapes label title in filtersescape-label-title
Fixes #15522
-rw-r--r--app/assets/javascripts/labels_select.js.coffee2
1 files changed, 1 insertions, 1 deletions
diff --git a/app/assets/javascripts/labels_select.js.coffee b/app/assets/javascripts/labels_select.js.coffee
index 516f7d19932..85517b18c5a 100644
--- a/app/assets/javascripts/labels_select.js.coffee
+++ b/app/assets/javascripts/labels_select.js.coffee
@@ -223,7 +223,7 @@ class @LabelsSelect
fieldName: $dropdown.data('field-name')
id: (label) ->
if $dropdown.hasClass("js-filter-submit") and not label.isAny?
- label.title
+ _.escape label.title
else
label.id