cockpit/js/instance.js in cpee-2.1.15 vs cockpit/js/instance.js in cpee-2.1.16
- old
+ new
@@ -1364,9 +1364,14 @@
message = message.replace(/,\{/g,', {');
message = message.replace(/,\[/g,', [');
message = message.replace(/:\"/g,': "');
message = message.replace(/:\{/g,': {');
message = message.replace(/:\[/g,': [');
+ message = message.replace(/&/g, '&');
+ message = message.replace(/</g, '<');
+ message = message.replace(/>/g, '>');
+ message = message.replace(/"/g, '"');
+ message = message.replace(/'/g, ''');
$("#dat_log").prepend("<tr><td class='fixed'><a title=\"" + d.strftime("[%d/%b/%Y %H:%M:%S]") + "\">D</a></td><td class='fixed'> - </td><td class='fixed'><a title=\"" + what + "\">T</a></td><td class='fixed'> - </td><td class='fixed'>" + type + "</td><td class='fixed'> - </td><td class='long'>" + message + "</td></tr>");
var dle = $("#dat_log").children();
if (dle.length > 100) {
dle.slice(100).each((k,ele) => {
$(ele).remove();