From 734411369bb06484c6a211ae81aac387a3124c50 Mon Sep 17 00:00:00 2001 From: Keegan McAllister Date: Wed, 24 Oct 2012 14:32:17 -0400 Subject: [PATCH] format_updates_response: Default to apply_markdown=True It's the safer default to prevent introducing XSS holes. And in our current code, we always provide this parameter. (imported from commit 73897f5315ba54a5d3fa95dd19efb9d20c081a8a) --- zephyr/views.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/zephyr/views.py b/zephyr/views.py index 66fe8daa82..af0116dfd3 100644 --- a/zephyr/views.py +++ b/zephyr/views.py @@ -236,7 +236,7 @@ def update_pointer_backend(request, user_profile): return json_success() -def format_updates_response(messages=[], apply_markdown=False, reason_empty=None, +def format_updates_response(messages=[], apply_markdown=True, reason_empty=None, user_profile=None, new_pointer=None, where='bottom', mirror=None): max_message_id = None