From ed40735dccb677c7477faffe8a885a345ac8c71b Mon Sep 17 00:00:00 2001 From: Mischa POSLAWSKY Date: Thu, 13 Sep 2018 13:42:27 +0200 Subject: [PATCH] index: escape html of git commit messages Subjects may contain '<' characters. --- index.plp | 1 + 1 file changed, 1 insertion(+) diff --git a/index.plp b/index.plp index 57cca20..db6284c 100644 --- a/index.plp +++ b/index.plp @@ -32,6 +32,7 @@ my @format = ('--date=short', "--pretty=%ad (%ar)\t%s"); if (open my $log, '-|', git => 'log', -1, @format) {{ my $line = readline $log; $line or next; # explicitly ignore empty input + EscapeHTML $line; my ($date, $subject) = split /[\t\n]/, $line; $date =~ s/ \K// and $date .= ''; say "

Last update: $date $subject

"; -- 2.30.0