commit e2ae363e3290538ba2fd5fae2f0e1e650424ca09
parent cb7677056534e1d11e800e253aec0b99bb438cb4
Author: Dan Callaghan <djc@djc.id.au>
Date: Sun, 8 Jun 2008 00:58:16 +1000
disallow HTML in comments
committer: Dan Callaghan <djc@djc.id.au>
--HG--
extra : convert_revision : 75d08b50ee3debc3b181e890bb382b126d505a8a
Diffstat:
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/blog.py b/blog.py
@@ -179,7 +179,7 @@ class Comment(object):
self.id = id
self.raw = open(path, 'r').read().decode('utf-8')
- md = markdown.Markdown(extensions=['meta', 'typography'])
+ md = markdown.Markdown(extensions=['meta', 'typography'], safe_mode='escape')
self.body = genshi.Markup(md.convert(self.raw))
if not hasattr(md, 'Meta'): raise Exception(self.raw)
self.metadata = md.Meta