Skip to content

[stable34] fix(l10n): stop double-escaping the instance name in settings text - #64934

Merged
AndyScherzinger merged 2 commits into
stable34from
backport/64369/stable34
Oct 6, 2026
Merged

AndyScherzinger merged 2 commits into
stable34from
backport/64369/stable34

Conversation

@backportbot

@backportbot backportbot Bot commented Sep 30, 2026

Copy link
Copy Markdown

Backport of PR #64369

@backportbot
backportbot Bot requested a review from a team as a code owner September 30, 2026 12:40
@backportbot
backportbot Bot requested review from skjnldsv and susnux September 30, 2026 12:40
@backportbot backportbot Bot added bug 3. to review Waiting for reviews feature: language/translations (l10n/i18n) Localization and translation matters feedback-requested labels Sep 30, 2026
@backportbot backportbot Bot added this to the Nextcloud 34.0.5 milestone Sep 30, 2026
t() HTML-escapes placeholder values unless told otherwise. That is right
when the result is handed to v-html, and wrong for these six strings,
because every one of them is rendered as text - {{ }} interpolation,
NcSettingsSection's description, NcInputField's helperText, or an
aria-label. Vue escapes the string again on render, so the entity is what
the user actually reads: an instance called "Foo's Speicher" shows up as
"Foo's Speicher" in the OAuth 2.0 clients section and in four places
in the LDAP wizard.

Turning escaping off for these call sites is safe on two counts. The
results are text bindings, so Vue still escapes them exactly once on
render, and ThemingDefaults::getName() already runs the configured
instance name through strip_tags() before it reaches the theming
capability, so the value cannot carry markup to begin with.

This matches how the rest of the codebase handles text-rendered
placeholders, including the neighbouring user count in UsersTab.vue.

Assisted-by: ClaudeCode:claude-opus-5
Signed-off-by: Tor Valstrom <51440386+torvalstrom@users.noreply.github.com>
@AndyScherzinger
AndyScherzinger force-pushed the backport/64369/stable34 branch from 59ca0ff to 662e956 Compare October 6, 2026 06:39
@AndyScherzinger

Copy link
Copy Markdown
Member

/compile

Signed-off-by: nextcloud-command <nextcloud-command@users.noreply.github.com>
@AndyScherzinger
AndyScherzinger merged commit 0d38ec3 into stable34 Oct 6, 2026
89 checks passed
@AndyScherzinger
AndyScherzinger deleted the backport/64369/stable34 branch October 6, 2026 07:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants