From 1a26cb0938a3f9926fb5310b01e6e295140843ee Mon Sep 17 00:00:00 2001 From: barisusakli Date: Wed, 24 Sep 2014 13:50:43 -0400 Subject: [PATCH] #2139 --- src/meta/title.js | 2 ++ 1 file changed, 2 insertions(+) diff --git a/src/meta/title.js b/src/meta/title.js index 0019cdb686..0ca2d346ac 100644 --- a/src/meta/title.js +++ b/src/meta/title.js @@ -1,6 +1,7 @@ 'use strict'; var winston = require('winston'), + validator = require('validator'), user = require('../user'), translator = require('../../public/src/translator'); @@ -34,6 +35,7 @@ module.exports = function(Meta) { }; Meta.title.parseFragment = function (urlFragment, language, callback) { + urlFragment = validator.escape(urlFragment); var translated = ['', 'recent', 'unread', 'users', 'notifications']; if (translated.indexOf(urlFragment) !== -1) { if (!urlFragment.length) {