瀏覽代碼

Use sanitized parameters - closes #70

Andrew Kane 8 年之前
父節點
當前提交
4b4485bdd2
共有 2 個文件被更改,包括 2 次插入2 次删除
  1. 1 1
      app/views/blazer/dashboards/show.html.erb
  2. 1 1
      app/views/blazer/queries/show.html.erb

+ 1 - 1
app/views/blazer/dashboards/show.html.erb

@@ -40,7 +40,7 @@
 <% end %>
 
 <% if @bind_vars.any? %>
-  <form id="bind" method="get" action="<%= url_for(params) %>" class="form-inline" style="margin-bottom: 10px;">
+  <form id="bind" method="get" action="<%= dashboard_path(@dashboard, variable_params) %>" class="form-inline" style="margin-bottom: 10px;">
     <% date_vars = ["start_time", "end_time"] %>
     <% if (date_vars - @bind_vars).empty? %>
       <% @bind_vars = @bind_vars - date_vars %>

+ 1 - 1
app/views/blazer/queries/show.html.erb

@@ -52,7 +52,7 @@
 <% end %>
 
 <% if @bind_vars.any? %>
-  <form id="bind" method="get" action="<%= url_for(params) %>" class="form-inline" style="margin-bottom: 10px;">
+  <form id="bind" method="get" action="<%= query_path(@query, variable_params) %>" class="form-inline" style="margin-bottom: 10px;">
     <% date_vars = ["start_time", "end_time"] %>
     <% if (date_vars - @bind_vars).empty? %>
       <% @bind_vars = @bind_vars - date_vars %>