summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorbabababag <94438705+babababag@users.noreply.github.com>2021-11-17 12:04:30 +0000
committerGitHub <noreply@github.com>2021-11-17 12:04:30 +0000
commitfd54cf2d05452e7cd5de221581494772b82ba9c7 (patch)
tree2f22185f1f373cf895f05559c851fd1e2b04ab7e
parente0d26f4055adf6d1f016fbc9da0cf1a8eee57483 (diff)
downloadinvidious-fd54cf2d05452e7cd5de221581494772b82ba9c7.tar.gz
invidious-fd54cf2d05452e7cd5de221581494772b82ba9c7.tar.bz2
invidious-fd54cf2d05452e7cd5de221581494772b82ba9c7.zip
Escape video description
-rw-r--r--src/invidious/views/watch.ecr4
1 files changed, 2 insertions, 2 deletions
diff --git a/src/invidious/views/watch.ecr b/src/invidious/views/watch.ecr
index 2f3709dd..9cf00393 100644
--- a/src/invidious/views/watch.ecr
+++ b/src/invidious/views/watch.ecr
@@ -11,7 +11,7 @@
<meta property="og:url" content="<%= HOST_URL %>/watch?v=<%= video.id %>">
<meta property="og:title" content="<%= title %>">
<meta property="og:image" content="/vi/<%= video.id %>/maxres.jpg">
-<meta property="og:description" content="<%= video.short_description %>">
+<meta property="og:description" content="<%= HTML.escape(video.short_description) %>">
<meta property="og:type" content="video.other">
<meta property="og:video:url" content="<%= HOST_URL %>/embed/<%= video.id %>">
<meta property="og:video:secure_url" content="<%= HOST_URL %>/embed/<%= video.id %>">
@@ -22,7 +22,7 @@
<meta name="twitter:site" content="@omarroth1">
<meta name="twitter:url" content="<%= HOST_URL %>/watch?v=<%= video.id %>">
<meta name="twitter:title" content="<%= title %>">
-<meta name="twitter:description" content="<%= video.short_description %>">
+<meta name="twitter:description" content="<%= HTML.escape(video.short_description) %>">
<meta name="twitter:image" content="<%= HOST_URL %>/vi/<%= video.id %>/maxres.jpg">
<meta name="twitter:player" content="<%= HOST_URL %>/embed/<%= video.id %>">
<meta name="twitter:player:width" content="1280">