From 483f550f9c4f76f37d840f9f52cc85478fa86bf6 Mon Sep 17 00:00:00 2001 From: multiple creatures Date: Sat, 20 Jul 2019 12:20:43 -0500 Subject: [PATCH] fix query string sanitizer - use `query_values=` from `Addressable::URI` instead of `to_query` --- app/helpers/url_helper.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/helpers/url_helper.rb b/app/helpers/url_helper.rb index 98b532d7f..3fad2d6d3 100644 --- a/app/helpers/url_helper.rb +++ b/app/helpers/url_helper.rb @@ -30,7 +30,7 @@ module UrlHelper ].include?(k) false end - url.query = params.to_query + url.query_values = params return url.to_s rescue Addressable::URI::InvalidURIError, IDN::Idna::IdnaError return '#'