|
@@ -55,7 +55,7 @@ rest.get('/queries/mongodb').then { req ->
|
|
|
|
|
|
rest.get('/fortunes/mongodb').then {
|
|
|
|
|
|
- mongo.Fortunes.find().promise().then { fortunes ->
|
|
|
+ mongo.Fortune.find().promise().then { fortunes ->
|
|
|
fortunes << [_id:0, message:'Additional fortune added at request time.']
|
|
|
}.then { fortunes ->
|
|
|
fortunes[0].message = StringEscapeUtils.escapeHtml("<script>alert(\"${fortunes[0].message}\")</script>")
|