From 9703f576d96c113f9c73a87f85ad7da3241525b2 2008-07-02 17:27:16 From: Jean-Philippe Lang Date: 2008-07-02 17:27:16 Subject: [PATCH] Escapes HTML tags. git-svn-id: http://redmine.rubyforge.org/svn/trunk@1612 e93f8b46-1217-0410-a6f0-8f06a7374b81 --- diff --git a/app/views/account/show.rhtml b/app/views/account/show.rhtml index 97212b3..2d0731b 100644 --- a/app/views/account/show.rhtml +++ b/app/views/account/show.rhtml @@ -1,7 +1,7 @@

<%=h @user.name %>

-<%= mail_to @user.mail unless @user.pref.hide_mail %> +<%= mail_to(h(@user.mail)) unless @user.pref.hide_mail %>