]> git.ipfire.org Git - thirdparty/git.git/blobdiff - gitweb/gitweb.perl
gitweb: escape html in rss title
[thirdparty/git.git] / gitweb / gitweb.perl
index 10ed9e51a5880430f7f109ff83f950a768a7c530..a51a8babeee1ca5388d12a2ec8ba4b417c86e4a3 100755 (executable)
@@ -8055,6 +8055,7 @@ sub git_feed {
                $feed_type = 'history';
        }
        $title .= " $feed_type";
+       $title = esc_html($title);
        my $descr = git_get_project_description($project);
        if (defined $descr) {
                $descr = esc_html($descr);