From fa4573dcf9182bbb6d9094491dda697c54b06f59 Mon Sep 17 00:00:00 2001 From: Sdogruyol Date: Sun, 4 Dec 2016 16:27:40 +0300 Subject: [PATCH] HTML.escape render_500 --- src/kemal/helpers/templates.cr | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/src/kemal/helpers/templates.cr b/src/kemal/helpers/templates.cr index 3a5be61..b94697a 100644 --- a/src/kemal/helpers/templates.cr +++ b/src/kemal/helpers/templates.cr @@ -22,7 +22,7 @@ end def render_500(context, backtrace, verbosity) message = if verbosity - "
#{backtrace}
" + "
<%= backtrace %>
" else "

Something wrong with the server :(

" end @@ -42,7 +42,7 @@ def render_500(context, backtrace, verbosity)

Kemal has encountered an error. (500)

- #{message} + <%= HTML.escape(message) %> HTML