Skip to content

Commit ae4d046

Browse files
committed
add escaping for syntax blocks
1 parent 3f5e5a1 commit ae4d046

File tree

1 file changed

+3
-1
lines changed

1 file changed

+3
-1
lines changed

docs/plugins/builders/inspectors.rb

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,5 @@
1+
require "cgi"
2+
13
class Builders::Inspectors < SiteBuilder
24
def build
35
inspect_html do |document|
@@ -49,7 +51,7 @@ def syntax_highlight(document)
4951
<sl-icon class='clipboard__icon--idle' name='clipboard'></sl-icon>
5052
</clipboard-copy>
5153
52-
<textarea id='#{id}' hidden>#{text}</textarea>
54+
<textarea id='#{id}' hidden>#{CGI.escape_html(text)}</textarea>
5355
</div>
5456
HTML
5557

0 commit comments

Comments
 (0)