Fix XSS discovered by in the Whois code.

The whois code allowed to pass HTML from whois output to the resulting webpage
which would allow XSS on the page.

Remove Markup() call from the whois result display routine in order to allow
genshi to escape the whois output.
......@@ -724,7 +724,7 @@ class ULGCgi:
template = self.loader.load(defaults.whois_template_file)
res = whois.lookup(key)
return template.generate(result=Markup(res),
return template.generate(result=res,
).render('html', doctype='html', encoding='utf-8')
