<?xml version="1.0" encoding="UTF-8"?>
<commit>
  <added type="array"/>
  <modified type="array">
    <modified>
      <diff>@@ -5,7 +5,7 @@ class MainController &lt; Ramaze::Controller
   end
   
   def create
-    Task.create( :description =&gt; request[ 'description' ] )
+    Task.create( :description =&gt; h( request[ 'description' ] ) )
     redirect Rs( :/ )
   end
   </diff>
      <filename>src/main.rb</filename>
    </modified>
  </modified>
  <removed type="array"/>
  <parents type="array">
    <parent>
      <id>d0c0e34371cc8ab299c288c45fa4080bccb3128b</id>
    </parent>
  </parents>
  <author>
    <name>Pistos</name>
    <email>gitsomegrace.5.pistos@geoshell.com</email>
  </author>
  <url>http://github.com/Pistos/ramaze-todolist-tutorial/commit/0dc42c428e9d54a80f25bb42e12a0ec47ee52b3b</url>
  <id>0dc42c428e9d54a80f25bb42e12a0ec47ee52b3b</id>
  <committed-date>2008-11-19T16:29:33-08:00</committed-date>
  <authored-date>2008-11-19T16:29:33-08:00</authored-date>
  <message>Cleanse user input with h().</message>
  <tree>6200daa61581932914c57242d6ad289a485d1f1a</tree>
  <committer>
    <name>Pistos</name>
    <email>gitsomegrace.5.pistos@geoshell.com</email>
  </committer>
</commit>
