1
0
mirror of https://github.com/django/django.git synced 2025-10-24 06:06:09 +00:00

Fixed #21731 -- Made javascript_quote escapes '</'.

This commit is contained in:
Vajrasky Kok
2014-01-04 12:57:50 +08:00
committed by Tim Graham
parent b17c75564f
commit c43c469a2e
2 changed files with 12 additions and 0 deletions

View File

@@ -327,6 +327,7 @@ def javascript_quote(s, quote_double_quotes=False):
s = s.replace('\n', '\\n')
s = s.replace('\t', '\\t')
s = s.replace("'", "\\'")
s = s.replace('</', '<\\/')
if quote_double_quotes:
s = s.replace('"', '&quot;')
return str(ustring_re.sub(fix, s))