diff options
author | r <r@freesoftwareextremist.com> | 2020-10-17 16:25:08 +0000 |
---|---|---|
committer | r <r@freesoftwareextremist.com> | 2020-10-17 16:25:08 +0000 |
commit | 7d989d56e572606e6f4051eed6e8fd43b3d63ec5 (patch) | |
tree | e69f0dd2aea4477484ce55598d650aa6e76b3324 /templates | |
parent | 9c5cb289f9ec9cce597a0d9ee1284cf61c69ac66 (diff) | |
download | bloat-7d989d56e572606e6f4051eed6e8fd43b3d63ec5.tar.gz bloat-7d989d56e572606e6f4051eed6e8fd43b3d63ec5.zip |
Fix search query escaping
Diffstat (limited to 'templates')
-rw-r--r-- | templates/search.tmpl | 2 | ||||
-rw-r--r-- | templates/usersearch.tmpl | 2 |
2 files changed, 2 insertions, 2 deletions
diff --git a/templates/search.tmpl b/templates/search.tmpl index 7273598..0473d4a 100644 --- a/templates/search.tmpl +++ b/templates/search.tmpl @@ -5,7 +5,7 @@ <form class="search-form" action="/search" method="GET"> <span class="post-form-field"> <label for="query"> Query </label> - <input id="query" name="q" value="{{.Q | HTMLEscape}}"> + <input id="query" name="q" value="{{.Q}}"> </span> <span class="post-form-field"> <label for="type"> Type </label> diff --git a/templates/usersearch.tmpl b/templates/usersearch.tmpl index e4989bb..3f42f28 100644 --- a/templates/usersearch.tmpl +++ b/templates/usersearch.tmpl @@ -5,7 +5,7 @@ <form class="search-form" action="/usersearch/{{.User.ID}}" method="GET"> <span class="post-form-field> <label for="query"> Query </label> - <input id="query" name="q" value="{{.Q | HTMLEscape}}"> + <input id="query" name="q" value="{{.Q}}"> </span> <button type="submit"> Search </button> </form> |