From b30511af92c7d254aa81a0594e55fdae97b5bcfe Mon Sep 17 00:00:00 2001 From: Ashley //// Date: Thu, 11 Apr 2024 08:21:04 +0000 Subject: [PATCH] use escapeHtml --- html/poketube.ejs | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/html/poketube.ejs b/html/poketube.ejs index 1ef47051..97db4c6f 100644 --- a/html/poketube.ejs +++ b/html/poketube.ejs @@ -1604,7 +1604,7 @@ WIP! <% } %>

- <%- x.content %>

+ <%- escapeHtml(x.content) %>

<% if (x.like_count === 0) { %> | <% } else { %> <%= x.like_count %> |