mirror of
https://github.com/zebrajr/ladybird.git
synced 2025-12-06 00:19:53 +01:00
LibWeb: Properly escape URL on error page
This commit is contained in:
parent
634823d5b4
commit
e8c228fb93
|
|
@ -33,7 +33,7 @@ ErrorOr<String> load_error_page(URL::URL const& url, StringView error_message)
|
|||
auto template_file = TRY(Core::Resource::load_from_uri("resource://ladybird/templates/error.html"sv));
|
||||
StringBuilder builder;
|
||||
SourceGenerator generator { builder, '%', '%' };
|
||||
generator.set("failed_url", url.to_byte_string());
|
||||
generator.set("failed_url", escape_html_entities(url.to_byte_string()));
|
||||
generator.set("error_message", escape_html_entities(error_message));
|
||||
generator.append(template_file->data());
|
||||
return TRY(String::from_utf8(generator.as_string_view()));
|
||||
|
|
|
|||
Loading…
Reference in New Issue
Block a user