From ebc6f90d4445e31724e35c23dbf6d9a1953466bd Mon Sep 17 00:00:00 2001 From: Malcolm Tredinnick Date: Fri, 14 Jul 2006 11:48:25 +0000 Subject: Escaped variables that should not be interpreted as HTML and which might contain dangerous characters. git-svn-id: http://code.djangoproject.com/svn/django/trunk@3350 bcc190cf-cafb-0310-a4f2-bffc1f526a37 --- django/contrib/admin/templates/admin_doc/model_detail.html | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) (limited to 'django/contrib/admin/templates/admin_doc/model_detail.html') diff --git a/django/contrib/admin/templates/admin_doc/model_detail.html b/django/contrib/admin/templates/admin_doc/model_detail.html index 9ac56864fa..44fc43e704 100644 --- a/django/contrib/admin/templates/admin_doc/model_detail.html +++ b/django/contrib/admin/templates/admin_doc/model_detail.html @@ -9,13 +9,13 @@ {% endblock %} -{% block breadcrumbs %}{% endblock %} +{% block breadcrumbs %}{% endblock %} -{% block title %}Model: {{ name }}{% endblock %} +{% block title %}Model: {{ name|escape }}{% endblock %} {% block content %}
-

{{ summary }}

+

{{ summary|escape }}

{% if description %}

{% filter escape|linebreaksbr %}{% trans description %}{% endfilter %}

@@ -35,7 +35,7 @@ {{ field.name }} {{ field.data_type }} - {% if field.verbose %}{{ field.verbose }}{% endif %}{% if field.help_text %} - {{ field.help_text }}{% endif %} + {% if field.verbose %}{{ field.verbose|escape }}{% endif %}{% if field.help_text %} - {{ field.help_text|escape }}{% endif %} {% endfor %} -- cgit v1.3