diff options
author | Roger Braun <roger@rogerbraun.net> | 2017-06-14 14:46:18 +0200 |
---|---|---|
committer | Roger Braun <roger@rogerbraun.net> | 2017-06-14 14:46:18 +0200 |
commit | 83c657afa557ac3cdfd2e3888511b403857de8aa (patch) | |
tree | 6013154129657c78b60a762b32d5baf3627876f2 /lib | |
parent | 1af9c777365f3b54edcb572cea4e2e6f185b3099 (diff) | |
download | pleroma-83c657afa557ac3cdfd2e3888511b403857de8aa.tar.gz |
Do some basic escaping.
Diffstat (limited to 'lib')
-rw-r--r-- | lib/pleroma/web/twitter_api/utils.ex | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/lib/pleroma/web/twitter_api/utils.ex b/lib/pleroma/web/twitter_api/utils.ex index 65d893869..5cbe0cf9c 100644 --- a/lib/pleroma/web/twitter_api/utils.ex +++ b/lib/pleroma/web/twitter_api/utils.ex @@ -11,7 +11,7 @@ defmodule Pleroma.Web.TwitterAPI.Utils do def add_attachments(text, attachments) do attachment_text = Enum.map(attachments, fn (%{"url" => [%{"href" => href} | _]}) -> - "<a href='#{href}' class='attachment'>#{Path.basename(href)}</a>" + "<a href=\"#{URI.encode(href)}\" class='attachment'>#{Path.basename(href)}</a>" _ -> "" end) Enum.join([text | attachment_text], "<br>\n") |