From 11d4d8177c7bd3e18f04b10f7b25c33409bf5fc9 2012-08-13 14:59:59 From: Jean-Philippe Lang Date: 2012-08-13 14:59:59 Subject: [PATCH] Escape filter values using .text instead of .html. git-svn-id: svn+ssh://rubyforge.org/var/svn/redmine/trunk@10201 e93f8b46-1217-0410-a6f0-8f06a7374b81 --- diff --git a/public/javascripts/application.js b/public/javascripts/application.js index 5f64c41..7346257 100644 --- a/public/javascripts/application.js +++ b/public/javascripts/application.js @@ -130,7 +130,7 @@ function buildFilterRow(field, operator, values) { select = tr.find('td.operator select'); for (i=0;i').val(operators[i]).html(operatorLabels[operators[i]]); + var option = $('