diff options
Diffstat (limited to '')
| -rw-r--r-- | src/invidious/views/login.ecr | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/src/invidious/views/login.ecr b/src/invidious/views/login.ecr index 7fa25278..7e2c2e21 100644 --- a/src/invidious/views/login.ecr +++ b/src/invidious/views/login.ecr @@ -32,7 +32,7 @@ <% end %> <% if password %> - <input name="password" type="hidden" value="<%= password %>"> + <input name="password" type="hidden" value="<%= HTML.escape(password) %>"> <% else %> <label for="password"><%= translate(locale, "Password") %> :</label> <input required class="pure-input-1" name="password" type="password" placeholder="<%= translate(locale, "Password") %>"> @@ -95,7 +95,7 @@ <% end %> <% if password %> - <input name="password" type="hidden" value="<%= password %>"> + <input name="password" type="hidden" value="<%= HTML.escape(password) %>"> <% else %> <label for="password"><%= translate(locale, "Password") %> :</label> <input required class="pure-input-1" name="password" type="password" placeholder="<%= translate(locale, "Password") %>"> |
