Roundup Tracker - Issues

Message4210

Author ThomasAH
Recipients ThomasAH
Date 2010-11-19.13:23:28
Message-id <1290173009.29.0.932755466794.issue2550684@psf.upfronthosting.co.za>
In-reply-to
If you have a user with HTML code in the username, the history of e.g.
issues or user details included the unescaped HTML code.

A patch to fix this problem is attached.

I tested with a username ending with:
 <a href="http://www.example.com">foo</a>
which generated a clickable link in the history.
History
Date User Action Args
2010-11-19 13:23:29ThomasAHsetrecipients: + ThomasAH
2010-11-19 13:23:29ThomasAHsetmessageid: <1290173009.29.0.932755466794.issue2550684@psf.upfronthosting.co.za>
2010-11-19 13:23:29ThomasAHlinkissue2550684 messages
2010-11-19 13:23:29ThomasAHcreate