From 6a8a5a9de0b83e848bc7be2d7f55daeb42821028 Mon Sep 17 00:00:00 2001 From: barisusakli Date: Thu, 18 Dec 2014 23:43:07 -0500 Subject: [PATCH] use validator.escape --- src/middleware/middleware.js | 11 +---------- 1 file changed, 1 insertion(+), 10 deletions(-) diff --git a/src/middleware/middleware.js b/src/middleware/middleware.js index 048b9d86bf..c09a24fc4b 100644 --- a/src/middleware/middleware.js +++ b/src/middleware/middleware.js @@ -252,13 +252,6 @@ middleware.renderHeader = function(req, res, callback) { navigation: custom_header.navigation, allowRegistration: meta.config.allowRegistration === undefined || parseInt(meta.config.allowRegistration, 10) === 1, searchEnabled: plugins.hasListeners('filter:search.query') - }, - escapeList = { - '&': '&', - '<': '<', - '>': '>', - "'": ''', - '"': '"' }; for (var key in res.locals.config) { @@ -273,9 +266,7 @@ middleware.renderHeader = function(req, res, callback) { return tag; } - tag.content = tag.content.replace(/[&<>'"]/g, function(tag) { - return escapeList[tag] || tag; - }); + tag.content = validator.escape(tag.content); return tag; });