mirror of
https://github.com/github/codeql.git
synced 2026-04-26 09:15:12 +02:00
Use of CGI.escapeHTML() in test samples
This commit is contained in:
@@ -18,7 +18,7 @@ end
|
||||
class UnicodeNormalizationHtMLSafeController < ActionController::Base
|
||||
def unicodeNormalize
|
||||
unicode_input = params[:unicode_input]
|
||||
unicode_html_safe = unicode_input.html_safe
|
||||
unicode_html_safe = CGI.escapeHTML(unicode_input).html_safe
|
||||
normalized_nfkc = unicode_html_safe.unicode_normalize(:nfkc) # $result=BAD
|
||||
normalized_nfc = unicode_html_safe.unicode_normalize(:nfc) # $result=BAD
|
||||
end
|
||||
|
||||
Reference in New Issue
Block a user