##// END OF EJS Templates
select2: always escape .text attributes to prevent XSS via...
select2: always escape .text attributes to prevent XSS via vcs references.

File last commit:

r1:854a839a default
r2196:2338f289 stable
Show More
util.py
10 lines | 211 B | text/x-python | PythonLexer
"""
Safe quoting method
"""
def safe_quote(obj):
# this is the SQLA 0.9 approach
if hasattr(obj, 'name') and hasattr(obj.name, 'quote'):
return obj.name.quote
else:
return obj.quote