Merge pull request #1530 from yyamano/fix-xss

Fix a XSS issue.
This commit is contained in:
Tony Tam
2015-12-09 15:15:16 -08:00

View File

@@ -181,7 +181,7 @@ window.SwaggerUi = Backbone.Router.extend({
var $msgbar = $('#message-bar'); var $msgbar = $('#message-bar');
$msgbar.removeClass('message-fail'); $msgbar.removeClass('message-fail');
$msgbar.addClass('message-success'); $msgbar.addClass('message-success');
$msgbar.html(data); $msgbar.text(data);
if(window.SwaggerTranslator) { if(window.SwaggerTranslator) {
window.SwaggerTranslator.translate($msgbar); window.SwaggerTranslator.translate($msgbar);
} }