From 3d513cae6ee96d0ce6c10b5068f91a6df10999d3 2015-11-01 08:16:10 From: Jean-Philippe Lang Date: 2015-11-01 08:16:10 Subject: [PATCH] Use #safe_attributes= for building new time entry. git-svn-id: http://svn.redmine.org/redmine/trunk@14787 e93f8b46-1217-0410-a6f0-8f06a7374b81 --- diff --git a/app/controllers/issues_controller.rb b/app/controllers/issues_controller.rb index e8e1e3c..2abe13a 100644 --- a/app/controllers/issues_controller.rb +++ b/app/controllers/issues_controller.rb @@ -376,7 +376,7 @@ class IssuesController < ApplicationController def update_issue_from_params @time_entry = TimeEntry.new(:issue => @issue, :project => @issue.project) if params[:time_entry] - @time_entry.attributes = params[:time_entry] + @time_entry.safe_attributes = params[:time_entry] end @issue.init_journal(User.current)