diff options
| author | Yuval Kordov <uberllama@gmail.com> | 2014-02-12 08:22:13 -0700 |
|---|---|---|
| committer | Yuval Kordov <uberllama@gmail.com> | 2014-02-12 08:22:13 -0700 |
| commit | 30639e1d107b70abc338bc786943db1d88d31e0d (patch) | |
| tree | 73a30ecba1574bb061db9285217a949cd287bdb0 /actionpack/test/controller/parameters/always_permitted_parameters_test.rb | |
| parent | 7d5454dcdd7c037658bc62ab3af177e5ca3b69ad (diff) | |
| download | rails-30639e1d107b70abc338bc786943db1d88d31e0d.tar.gz rails-30639e1d107b70abc338bc786943db1d88d31e0d.tar.bz2 rails-30639e1d107b70abc338bc786943db1d88d31e0d.zip | |
Amended json_escape comment to clarify that user-generated content must still be html_escaped if being inserted ingot he DOM via JQuery's html() method.
Diffstat (limited to 'actionpack/test/controller/parameters/always_permitted_parameters_test.rb')
0 files changed, 0 insertions, 0 deletions
