From 61b11635c2eedd1798298e534ce1c7462bb3b793 Mon Sep 17 00:00:00 2001 From: apoorvam Date: Tue, 20 Dec 2016 14:39:08 +0530 Subject: [PATCH] Escaping certain elements to avoid code injection #117 The error message, stacktrace, custom messages in report is escaped. --- .../expectedE2E/before_suite_fail.html | 24 +++++----- .../expectedE2E/failing_specification_1.html | 24 +++++----- .../integration/after_scenario_fail.html | 24 +++++----- .../integration/after_spec_fail.html | 24 +++++----- .../integration/after_step_fail.html | 24 +++++----- .../integration/after_suite_fail.html | 24 +++++----- .../before_after_scenario_fail.html | 48 +++++++++---------- .../integration/before_after_spec_fail.html | 48 +++++++++---------- .../integration/before_after_step_fail.html | 48 +++++++++---------- .../integration/before_after_suite_fail.html | 48 +++++++++---------- .../integration/before_scenario_fail.html | 24 +++++----- .../integration/before_spec_fail.html | 24 +++++----- .../integration/before_step_fail.html | 24 +++++----- .../_testdata/integration/concept_fail.html | 26 +++++----- .../integration/multiple_scenarios.html | 24 +++++----- .../_testdata/integration/step_fail.html | 24 +++++----- generator/generate_test.go | 12 +++++ generator/templates.go | 6 +-- 18 files changed, 256 insertions(+), 244 deletions(-) diff --git a/generator/_testdata/expectedE2E/before_suite_fail.html b/generator/_testdata/expectedE2E/before_suite_fail.html index 2a2b3c1..2e2d042 100644 --- a/generator/_testdata/expectedE2E/before_suite_fail.html +++ b/generator/_testdata/expectedE2E/before_suite_fail.html @@ -95,18 +95,18 @@

Project: Gauge Project

diff --git a/generator/_testdata/integration/after_scenario_fail.html b/generator/_testdata/integration/after_scenario_fail.html index a046174..1560cf3 100644 --- a/generator/_testdata/integration/after_scenario_fail.html +++ b/generator/_testdata/integration/after_scenario_fail.html @@ -166,18 +166,18 @@