Commit 59351c5b authored by Matthieu Muffato's avatar Matthieu Muffato
Browse files

Analysis parameters should be HTML-escaped

parent 3cbe8e25
......@@ -65,8 +65,8 @@
<td class="td-input-value"><input class="input-value" id="<TMPL_VAR NAME=parameterValueID>"
data-value="<TMPL_VAR NAME=value>"
value="<TMPL_VAR NAME=value>">
data-value="<TMPL_VAR NAME=value ESCAPE=HTML>"
value="<TMPL_VAR NAME=value ESCAPE=HTML>">
<TMPL_LOOP NAME=change_parameter>
<td class="button-cell"><a class="update_param btn btn-mini"
