view db/migrate/103_set_custom_fields_editable.rb @ 799:9f2bc483b7ec feature_14

Fixes the html injection problem in the client side (Bug #341).
author luisf <luis.figueira@eecs.qmul.ac.uk>
date Mon, 21 Nov 2011 17:17:25 +0000
parents 513646585e45
children
line wrap: on
line source
class SetCustomFieldsEditable < ActiveRecord::Migration
  def self.up
    UserCustomField.update_all("editable = #{CustomField.connection.quoted_false}")
  end

  def self.down
    UserCustomField.update_all("editable = #{CustomField.connection.quoted_true}")
  end
end