portals-jetspeed-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From tay...@apache.org
Subject svn commit: r1730768 - /portals/jetspeed-2/applications/j2-admin/trunk/src/main/webapp/WEB-INF/view/security/usermanager2.jsp
Date Tue, 16 Feb 2016 23:06:54 GMT
Author: taylor
Date: Tue Feb 16 23:06:53 2016
New Revision: 1730768

URL: http://svn.apache.org/viewvc?rev=1730768&view=rev
Log:
encoding url parameters from UserManager2

Modified:
    portals/jetspeed-2/applications/j2-admin/trunk/src/main/webapp/WEB-INF/view/security/usermanager2.jsp

Modified: portals/jetspeed-2/applications/j2-admin/trunk/src/main/webapp/WEB-INF/view/security/usermanager2.jsp
URL: http://svn.apache.org/viewvc/portals/jetspeed-2/applications/j2-admin/trunk/src/main/webapp/WEB-INF/view/security/usermanager2.jsp?rev=1730768&r1=1730767&r2=1730768&view=diff
==============================================================================
--- portals/jetspeed-2/applications/j2-admin/trunk/src/main/webapp/WEB-INF/view/security/usermanager2.jsp
(original)
+++ portals/jetspeed-2/applications/j2-admin/trunk/src/main/webapp/WEB-INF/view/security/usermanager2.jsp
Tue Feb 16 23:06:53 2016
@@ -19,7 +19,7 @@ limitations under the License.
 <%@ page import="org.apache.jetspeed.request.RequestContext"%>
 <%@ page import="org.apache.jetspeed.security.UserResultList"%>
 <%@ page import="org.apache.jetspeed.security.User"%>
-
+<%@page import="org.apache.commons.lang.StringEscapeUtils"%>
 
 <%@ taglib uri="http://java.sun.com/jsp/jstl/core" prefix="c"%>
 <%@ taglib uri="http://java.sun.com/jstl/core_rt" prefix="c_rt"%>
@@ -332,7 +332,7 @@ YUI({combine: true, timeout: 10000}).use
         	var cNode = constraintNodes.item(i);
         	var keyNode = cNode.one('#constraintKey')._node;
         	var key = keyNode.options[keyNode.selectedIndex].value;
-        	var value = cNode.one('#constraintValue'+i).get('value');
+        	var value = encodeURIComponent(cNode.one('#constraintValue'+i).get('value'));
         	if (key == 'user') {
         		UserResultTable.settings.userName = value;
         	} else if (key == 'hasRole') {



---------------------------------------------------------------------
To unsubscribe, e-mail: jetspeed-dev-unsubscribe@portals.apache.org
For additional commands, e-mail: jetspeed-dev-help@portals.apache.org


Mime
View raw message