diff --git a/app/js/tl/tl.js b/app/js/tl/tl.js index 421d7c44..f70ecc60 100644 --- a/app/js/tl/tl.js +++ b/app/js/tl/tl.js @@ -851,7 +851,7 @@ function cap(type, data, acct_id) { } else if (type == 'bookmark') { var response = 'Bookmarks' } else if (type == 'utl') { - var response = 'User TL(' + data.acct + ')' + var response = 'User TL(' + escapeHTML(data.acct) + ')' } return response } diff --git a/app/js/ui/sort.js b/app/js/ui/sort.js index fc854209..428dece6 100644 --- a/app/js/ui/sort.js +++ b/app/js/ui/sort.js @@ -33,7 +33,7 @@ function sortLoad () { var acctdata = user + "@" + domain; } - var html = '
  • ' + icon(acct.type) + '
    ' + cap(acct.type, escapeHTML(acct.data), acct.domain) + '
    ' + icon(acct.type) + '
    ' + cap(acct.type, acct.data, acct.domain) + '
    ' + acctdata + '
  • '; $("#sort").append(html);