Fix URL-encoding in href strings (#2460)

* hrefs: replace HTML.escape w/ URI.encode_www_form

* Fix search_query_encoded
This commit is contained in:
mastihios
2021-10-11 12:18:20 +00:00
committed by GitHub
parent f5e7fe34a5
commit 0947c26612
5 changed files with 14 additions and 14 deletions

View File

@@ -96,7 +96,7 @@
<div class="pure-u-1 pure-u-md-4-5"></div>
<div class="pure-u-1 pure-u-lg-1-5" style="text-align:right">
<% if continuation %>
<a href="/channel/<%= ucid %>/playlists?continuation=<%= continuation %><% if sort_by != "last" %>&sort_by=<%= HTML.escape(sort_by) %><% end %>">
<a href="/channel/<%= ucid %>/playlists?continuation=<%= continuation %><% if sort_by != "last" %>&sort_by=<%= URI.encode_www_form(sort_by) %><% end %>">
<%= translate(locale, "Next page") %>
</a>
<% end %>