From d03506dd2a8ff30e7dcc14e49c121f4dedaa352d Mon Sep 17 00:00:00 2001 From: Stefan Ritter Date: Mon, 9 Mar 2009 16:17:15 +0100 Subject: [PATCH] CSS prevention changed to a oneliner --- blogthon.cgi | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/blogthon.cgi b/blogthon.cgi index 09e6112..f2a3d0e 100755 --- a/blogthon.cgi +++ b/blogthon.cgi @@ -54,12 +54,12 @@ if not ctext: ctext = "" # Comment to commit? if cname and ctext and ctitle: # Prevent XSS hacks - cname = cname.replace("<", "<") - cname = cname.replace(">", ">") - cname = cname.replace("\"", """) - ctext = ctext.replace("<", "<") - ctext = ctext.replace(">", ">") - ctext = ctext.replace("\"", """) + cname = cname.replace("<", "<") \ + .replace(">", ">") \ + .replace("\"", """) + ctext = ctext.replace("<", "<") \ + .replace(">", ">") \ + .replace("\"", """) # Add comment comments_file = glob.glob(entries_dir + ctitle + '.comments')