From 6681779b64030ab974e7e43fe6915a99f2fd7122 Mon Sep 17 00:00:00 2001 From: chiu Date: Sun, 26 Apr 2020 12:36:47 +0800 Subject: [PATCH] add xss protection --- app/controllers/personal_patents_controller.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/controllers/personal_patents_controller.rb b/app/controllers/personal_patents_controller.rb index 69efc8b..3affe8e 100644 --- a/app/controllers/personal_patents_controller.rb +++ b/app/controllers/personal_patents_controller.rb @@ -102,7 +102,7 @@ class PersonalPatentsController < ApplicationController 'url' => '/' + params[:locale] + params[:url], 'select_text' => select_text, 'search_text' => search_text, - 'search_value' => params[:keywords], + 'search_value' => params[:keywords].gsub(/\"/,''), 'csrf_value' => csrf_value }, 'headers' => headers, 'total_pages' => patents_total_pages,