mirror of
https://github.com/nginx/nginx.git
synced 2026-06-26 20:01:45 +00:00
Added escaping of double quotes in ngx_escape_html().
Patch by Zaur Abasmirzoev.
This commit is contained in:
parent
13717da19e
commit
1b9b19d7e2
1 changed files with 9 additions and 0 deletions
|
|
@ -1657,6 +1657,10 @@ ngx_escape_html(u_char *dst, u_char *src, size_t size)
|
|||
len += sizeof("&") - 2;
|
||||
break;
|
||||
|
||||
case '"':
|
||||
len += sizeof(""") - 2;
|
||||
break;
|
||||
|
||||
default:
|
||||
break;
|
||||
}
|
||||
|
|
@ -1684,6 +1688,11 @@ ngx_escape_html(u_char *dst, u_char *src, size_t size)
|
|||
*dst++ = ';';
|
||||
break;
|
||||
|
||||
case '"':
|
||||
*dst++ = '&'; *dst++ = 'q'; *dst++ = 'u'; *dst++ = 'o';
|
||||
*dst++ = 't'; *dst++ = ';';
|
||||
break;
|
||||
|
||||
default:
|
||||
*dst++ = ch;
|
||||
break;
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue