summaryrefslogtreecommitdiff
path: root/app/assets/javascripts/filtered_search
diff options
context:
space:
mode:
authorJacob Schatz <jschatz@gitlab.com>2017-05-03 14:12:15 +0000
committerJacob Schatz <jschatz@gitlab.com>2017-05-03 14:12:15 +0000
commit3aeae2c7fa22630edc8f1f29bbbdf0f7bb40e15e (patch)
tree1aa8735c07fa808072997ab70f59993f0b235da2 /app/assets/javascripts/filtered_search
parent185fd98fd4cb8f920558aea3795c4e1774cd39f5 (diff)
parentabde62b53ed993b4ceec778d4fb839fa0132c165 (diff)
downloadgitlab-ce-3aeae2c7fa22630edc8f1f29bbbdf0f7bb40e15e.tar.gz
Merge branch 'droplab-templating-xss-fix' into 'master'
droplab templating xss fix See merge request !2085
Diffstat (limited to 'app/assets/javascripts/filtered_search')
-rw-r--r--app/assets/javascripts/filtered_search/dropdown_hint.js2
1 files changed, 1 insertions, 1 deletions
diff --git a/app/assets/javascripts/filtered_search/dropdown_hint.js b/app/assets/javascripts/filtered_search/dropdown_hint.js
index 3e7a892756c..5e9434fd48f 100644
--- a/app/assets/javascripts/filtered_search/dropdown_hint.js
+++ b/app/assets/javascripts/filtered_search/dropdown_hint.js
@@ -62,7 +62,7 @@ class DropdownHint extends gl.FilteredSearchDropdown {
Object.assign({
icon: `fa-${icon}`,
hint,
- tag: `&lt;${tag}&gt;`,
+ tag: `<${tag}>`,
}, type && { type }),
);
}