Repository: wicket
Updated Branches:
  refs/heads/wicket-6.x 623661480 -> 2e729ab1b


Escape the value of the hidden field holding the focused element id

(cherry picked from commit 149cc36f30bcd3b31b727941f701e12ecbe3440f)


Project: http://git-wip-us.apache.org/repos/asf/wicket/repo
Commit: http://git-wip-us.apache.org/repos/asf/wicket/commit/2e729ab1
Tree: http://git-wip-us.apache.org/repos/asf/wicket/tree/2e729ab1
Diff: http://git-wip-us.apache.org/repos/asf/wicket/diff/2e729ab1

Branch: refs/heads/wicket-6.x
Commit: 2e729ab1b2317753e54f4fd81820fa35456705cd
Parents: 6236614
Author: Martin Tzvetanov Grigorov <[email protected]>
Authored: Wed Sep 3 17:34:56 2014 +0300
Committer: Martin Tzvetanov Grigorov <[email protected]>
Committed: Thu Sep 4 09:22:47 2014 +0300

----------------------------------------------------------------------
 .../markup/html/repeater/data/table/filter/FilterForm.java         | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)
----------------------------------------------------------------------


http://git-wip-us.apache.org/repos/asf/wicket/blob/2e729ab1/wicket-extensions/src/main/java/org/apache/wicket/extensions/markup/html/repeater/data/table/filter/FilterForm.java
----------------------------------------------------------------------
diff --git 
a/wicket-extensions/src/main/java/org/apache/wicket/extensions/markup/html/repeater/data/table/filter/FilterForm.java
 
b/wicket-extensions/src/main/java/org/apache/wicket/extensions/markup/html/repeater/data/table/filter/FilterForm.java
index 39bae7a..e3f4f77 100644
--- 
a/wicket-extensions/src/main/java/org/apache/wicket/extensions/markup/html/repeater/data/table/filter/FilterForm.java
+++ 
b/wicket-extensions/src/main/java/org/apache/wicket/extensions/markup/html/repeater/data/table/filter/FilterForm.java
@@ -90,7 +90,7 @@ public class FilterForm<T> extends Form<T>
                getResponse().write(
                        String.format(
                                "<div style='position: absolute; left: -9999px; 
width: 1px; height: 1px;'><input type='hidden' name='%s' id='%s' 
value='%s'/><input type='submit'/></div>",
-                               id, id, value));
+                               id, id, Strings.escapeMarkup(value)));
        }
 
        /**

Reply via email to