diff --git a/app/helpers/application_helper.rb b/app/helpers/application_helper.rb index 57d450c6..10dcb3b8 100644 --- a/app/helpers/application_helper.rb +++ b/app/helpers/application_helper.rb @@ -81,7 +81,7 @@ module ApplicationHelper subject = truncate(subject, :length => options[:truncate]) end end - s = link_to "#{issue.tracker} ##{issue.id}", {:controller => "issues", :action => "show", :id => issue}, + s = link_to "#{h(issue.tracker)} ##{issue.id}", {:controller => "issues", :action => "show", :id => issue}, :class => issue.css_classes, :title => title s << ": #{h subject}" if subject diff --git a/app/views/issues/show.rhtml b/app/views/issues/show.rhtml index 4b7daba7..8a3b69a3 100644 --- a/app/views/issues/show.rhtml +++ b/app/views/issues/show.rhtml @@ -1,6 +1,6 @@ <%= render :partial => 'action_menu' %> -
<%=l(:field_status)%>: | <%= @issue.status.name %> | +<%=l(:field_status)%>: | <%= h(@issue.status.name) %> | <%=l(:field_start_date)%>: | <%= format_date(@issue.start_date) %> |
---|---|---|---|---|---|
<%=l(:field_priority)%>: | <%= @issue.priority.name %> | +<%=l(:field_priority)%>: | <%= h(@issue.priority.name) %> | <%=l(:field_due_date)%>: | <%= format_date(@issue.due_date) %> |
<%=l(:field_done_ratio)%>: | <%= progress_bar @issue.done_ratio, :width => '80px', :legend => "#{@issue.done_ratio}%" %> | ||||
<%=l(:field_category)%>: | <%=h @issue.category ? @issue.category.name : "-" %> | +<%=l(:field_category)%>: | <%=h(@issue.category ? @issue.category.name : "-") %> | <% if User.current.allowed_to?(:view_time_entries, @project) %><%=l(:label_spent_time)%>: | <%= @issue.spent_hours > 0 ? (link_to l_hours(@issue.spent_hours), {:controller => 'timelog', :action => 'index', :project_id => @project, :issue_id => @issue}) : "-" %> |