Thread: [pgAdmin][RM5401] Object name does not displayed in search object ifobject name contains special characters

Hi Hackers,

Attached is the patch to fix the issue in search objects where object name does not display correctly if it html characters.
Code is changed to escape the HTML chars in Object name and path. Code is also changed to escape single quotes in the like clause of the search query.

Please review.

--
Thanks and Regards,
Aditya Toshniwal
pgAdmin Hacker | Sr. Software Engineer | EnterpriseDB India | Pune
"Don't Complain about Heat, Plant a TREE"
Attachment
Thanks, patch applied.

On Mon, Apr 20, 2020 at 1:49 PM Aditya Toshniwal <aditya.toshniwal@enterprisedb.com> wrote:
Hi Hackers,

Attached is the patch to fix the issue in search objects where object name does not display correctly if it html characters.
Code is changed to escape the HTML chars in Object name and path. Code is also changed to escape single quotes in the like clause of the search query.

Please review.

--
Thanks and Regards,
Aditya Toshniwal
pgAdmin Hacker | Sr. Software Engineer | EnterpriseDB India | Pune
"Don't Complain about Heat, Plant a TREE"


--
Thanks & Regards
Akshay Joshi
Sr. Software Architect
EnterpriseDB Software India Private Limited
Mobile: +91 976-788-8246