Revision 51113
Added by Claudio Atzori about 6 years ago
ResourceTreeController.java | ||
---|---|---|
16 | 16 |
import javax.servlet.http.HttpServletResponse; |
17 | 17 |
|
18 | 18 |
import org.apache.commons.io.IOUtils; |
19 |
import org.apache.commons.lang.StringEscapeUtils; |
|
19 |
import org.apache.commons.lang3.StringEscapeUtils;
|
|
20 | 20 |
import org.apache.commons.logging.Log; |
21 | 21 |
import org.apache.commons.logging.LogFactory; |
22 | 22 |
import org.dom4j.DocumentException; |
... | ... | |
257 | 257 |
} |
258 | 258 |
|
259 | 259 |
file = touch.spanize(file); |
260 |
file = StringEscapeUtils.escapeHtml(file); |
|
260 |
file = StringEscapeUtils.escapeHtml4(file);
|
|
261 | 261 |
file = touch.escape(file); |
262 | 262 |
// log.info("XML ESCAPED:" + file); |
263 | 263 |
|
... | ... | |
343 | 343 |
model.addAttribute("creating", "true"); |
344 | 344 |
} |
345 | 345 |
|
346 |
model.addAttribute("file", StringEscapeUtils.escapeHtml(file)); |
|
346 |
model.addAttribute("file", StringEscapeUtils.escapeHtml4(file));
|
|
347 | 347 |
model.addAttribute("pathComponents", extractPathComponents(collection, "../")); |
348 | 348 |
|
349 | 349 |
return "inspector/edit"; |
Also available in: Unified diff
using apache commons lang3