From 000c7603d6b6365b237aeb0ada0fdd80d8d1a181 Mon Sep 17 00:00:00 2001 From: Tejaswini Chile Date: Mon, 1 Nov 2021 12:08:10 +0530 Subject: [PATCH] feat/3247 Escape html tags from the slack messages (#3306) --- lib/integrations/slack/send_on_slack_service.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/integrations/slack/send_on_slack_service.rb b/lib/integrations/slack/send_on_slack_service.rb index 5d8b52e24..6f780ae38 100644 --- a/lib/integrations/slack/send_on_slack_service.rb +++ b/lib/integrations/slack/send_on_slack_service.rb @@ -56,7 +56,7 @@ class Integrations::Slack::SendOnSlackService < Base::SendOnChannelService def post_message @slack_message = slack_client.chat_postMessage( channel: hook.reference_id, - text: message_content, + text: ActionView::Base.full_sanitizer.sanitize(message_content), username: sender_name(message.sender), thread_ts: conversation.identifier, icon_url: avatar_url(message.sender)