diff options
author | Frédéric Guillot <fred@miniflux.net> | 2020-01-02 11:06:57 -0800 |
---|---|---|
committer | Frédéric Guillot <fred@miniflux.net> | 2020-01-02 11:20:10 -0800 |
commit | 4d9956cf658d7a970654ae3baf23ad995e287525 (patch) | |
tree | 475fc8d39549ec24ad09e0fbc0b206ef0141994c /template/html/choose_subscription.html | |
parent | ac3c936820033f27e32c9a4490f2f33d6ffd6b05 (diff) |
Make sure external URLs are not encoded incorrectly by Go template engine
Diffstat (limited to 'template/html/choose_subscription.html')
-rw-r--r-- | template/html/choose_subscription.html | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/template/html/choose_subscription.html b/template/html/choose_subscription.html index ee4a1dc..de33003 100644 --- a/template/html/choose_subscription.html +++ b/template/html/choose_subscription.html @@ -32,8 +32,8 @@ {{ range .subscriptions }} <div class="radio-group"> - <label title="{{ .URL }}"><input type="radio" name="url" value="{{ .URL }}"> {{ .Title }}</label> ({{ .Type }}) - <small title="Type = {{ .Type }}"><a href="{{ .URL }}" target="_blank" rel="noopener noreferrer" referrerpolicy="no-referrer">{{ .URL }}</a></small> + <label title="{{ .URL | safeURL }}"><input type="radio" name="url" value="{{ .URL | safeURL }}"> {{ .Title }}</label> ({{ .Type }}) + <small title="Type = {{ .Type }}"><a href="{{ .URL | safeURL }}" target="_blank" rel="noopener noreferrer" referrerpolicy="no-referrer">{{ .URL | safeURL }}</a></small> </div> {{ end }} |