diff options
author | Oleg Kalandarashvili <V1RTUOZ@users.noreply.github.com> | 2015-03-17 14:14:07 +0300 |
---|---|---|
committer | Oleg Kalandarashvili <V1RTUOZ@users.noreply.github.com> | 2015-03-17 14:14:07 +0300 |
commit | 07dc1bea83482b48b8a2ec2dadc233fe60f22db5 (patch) | |
tree | 46a6f58b77d2dd43711d178a4570c17ab0b0eb1c | |
parent | 657694df38b2ae35a11bcf4f8f2f7d42ce1dfb69 (diff) |
fixes #533
-rw-r--r-- | app/javascripts/dataform.js | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/app/javascripts/dataform.js b/app/javascripts/dataform.js index 74ac29d7..e8af85d2 100644 --- a/app/javascripts/dataform.js +++ b/app/javascripts/dataform.js @@ -591,8 +591,8 @@ var DataForm = (function () { '<div class="avatar-container">' +
'<img class="avatar" src="' + './images/others/default-avatar.png' + '" alt="" />' +
'</div>' +
- '<div class="one-fn">' + bName + '</div>' +
- '<div class="one-ctry">' + bCountry + '</div>' +
+ '<div class="one-fn">' + Common.htmlentities(bName) + '</div>' +
+ '<div class="one-ctry">' + Common.htmlentities(bCountry) + '</div>' +
'<div class="one-jid">' + bXID + '</div>' +
'<div class="buttons-container">';
@@ -1197,4 +1197,4 @@ var DataForm = (function () { */
return self;
-})();
\ No newline at end of file +})();
|