Merge pull request #557 from return42/fix-autocomplete

[fix] route /autocompleter: escape `<` and `>` in the simple theme
This commit is contained in:
Alexandre Flament
2021-11-29 16:58:15 +01:00
committed by GitHub

View File

@@ -916,7 +916,8 @@ def autocompleter():
suggestions = json.dumps([sug_prefix, results])
mimetype = 'application/x-suggestions+json'
suggestions = escape(suggestions, False)
if get_current_theme_name() == 'simple':
suggestions = escape(suggestions, False)
return Response(suggestions, mimetype=mimetype)