Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
BAP-18542: Wrong rendering of translated labels (#31047)
- fixed `<%=` usages in JS templates, replaced with `<%-` - translation caches are sanitized on build - removed `|raw` where not needed - enabled XSS checks in translations for XSS build
- Loading branch information
Showing
138 changed files
with
883 additions
and
387 deletions.
There are no files selected for viewing
2 changes: 1 addition & 1 deletion
2
src/Oro/Bundle/ActivityListBundle/Resources/views/ActivityList/js/list.html.twig
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,6 +1,6 @@ | ||
<script type="text/html" id="{{ id|e('html_attr')|raw }}"> | ||
<div class="items list-box list-shaped"></div> | ||
<div class="no-data"> | ||
{{ "oro.activitylist.no_activities_exist"|trans|raw }} | ||
{{ "oro.activitylist.no_activities_exist"|trans }} | ||
</div> | ||
</script> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
2 changes: 1 addition & 1 deletion
2
src/Oro/Bundle/AddressBundle/Resources/views/Include/javascript.html.twig
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,7 +1,7 @@ | ||
{% block oro_region_updater_js %} | ||
<script type="text/template" id="region-chooser-template"> | ||
<% _.each(regions, function(region, i) { %> | ||
<option value="<%= region.get('combinedCode') %>"><%= region.get('name') %></option> | ||
<option value="<%- region.get('combinedCode') %>"><%- region.get('name') %></option> | ||
<% }); %> | ||
</script> | ||
{% endblock oro_region_updater_js %} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
2 changes: 1 addition & 1 deletion
2
src/Oro/Bundle/CommentBundle/Resources/public/templates/comment/comments-header-view.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
2 changes: 1 addition & 1 deletion
2
src/Oro/Bundle/CommentBundle/Resources/public/templates/comment/comments-no-data.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,2 +1,2 @@ | ||
<% var classNames = items.length ? 'no-data hide' : 'no-data' %> | ||
<div class="<%- classNames %>"><%= _.__('oro.comment.no_data_found') %></div> | ||
<div class="<%- classNames %>"><%- _.__('oro.comment.no_data_found') %></div> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
14 changes: 7 additions & 7 deletions
14
src/Oro/Bundle/DataAuditBundle/Resources/public/templates/audit-filter.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
2 changes: 1 addition & 1 deletion
2
...Resources/public/templates/datagrid-settings/datagrid-settings-dialog-widget-actions.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,5 +1,5 @@ | ||
<div class="widget-actions form-actions"> | ||
<button type="reset" class="btn"> | ||
<%= _.__('oro.datagrid.settings.close.label')%> | ||
<%- _.__('oro.datagrid.settings.close.label')%> | ||
</button> | ||
</div> |
10 changes: 5 additions & 5 deletions
10
...DataGridBundle/Resources/public/templates/datagrid-settings/datagrid-settings-filter.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,15 +1,15 @@ | ||
<div class="datagrid-settings-search<% if (search.length === 0) { %> empty<% } %>" | ||
data-role="datagrid-settings-search-wrapper"> | ||
<input type="text" data-role="datagrid-settings-search" value="<%=search %>" | ||
placeholder="<%= _.__('oro.datagrid.settings.filter.search_placeholder') %>" /> | ||
<input type="text" data-role="datagrid-settings-search" value="<%- search %>" | ||
placeholder="<%- _.__('oro.datagrid.settings.filter.search_placeholder') %>" /> | ||
<a href="#" class="clear fa-close" data-role="datagrid-settings-clear-search" | ||
title="<%= _.__('oro.datagrid.settings.filter.clear_search_tooltip') %>"></a> | ||
title="<%- _.__('oro.datagrid.settings.filter.clear_search_tooltip') %>"></a> | ||
</div> | ||
<a href="#" class="datagrid-settings-renderable-tab<% if (!renderable) { %> active<% } %>" | ||
data-role="datagrid-settings-show-all"> | ||
<%= _.__('oro.datagrid.settings.filter.all') %> | ||
<%- _.__('oro.datagrid.settings.filter.all') %> | ||
</a> | ||
<a href="#" class="datagrid-settings-renderable-tab<% if (renderable) { %> active<% } %>" | ||
data-role="datagrid-settings-show-selected"> | ||
<%= _.__('oro.datagrid.settings.filter.selected') %> | ||
<%- _.__('oro.datagrid.settings.filter.selected') %> | ||
</a> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
4 changes: 2 additions & 2 deletions
4
...Bundle/DataGridBundle/Resources/public/templates/datagrid-settings/datagrid-settings.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
2 changes: 1 addition & 1 deletion
2
src/Oro/Bundle/DataGridBundle/Resources/public/templates/datagrid/pagination-input.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
2 changes: 1 addition & 1 deletion
2
src/Oro/Bundle/DataGridBundle/Resources/public/templates/datagrid/pagination.html
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.