Commit 31736e9b authored by Dmitriy Zaporozhets's avatar Dmitriy Zaporozhets

Correctly escape search query

parent a476bc7b
......@@ -6,7 +6,8 @@ class SearchContext
end
def execute
query = Shellwords.shellescape(params[:search])
query = params[:search]
query = Shellwords.shellescape(query) if query.present?
return result unless query.present?
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment