mirror of
https://github.com/Pathduck/gallery3.git
synced 2026-05-20 03:19:13 -04:00
Fix XSS vectors in HTML attributes (mostly t() calls)
This commit is contained in:
@@ -24,7 +24,7 @@
|
||||
<td>
|
||||
<a href="<?= url::site("admin/advanced_settings/edit/$var->module_name/" . html::clean($var->name)) ?>"
|
||||
class="gDialogLink"
|
||||
title="<?= t("Edit %var (%module_name)", array("var" => $var->name, "module_name" => $var->module_name)) ?>">
|
||||
title="<?= t("Edit %var (%module_name)", array("var" => $var->name, "module_name" => $var->module_name))->for_html_attr() ?>">
|
||||
<? if ($var->value): ?>
|
||||
<?= html::clean($var->value) ?>
|
||||
<? else: ?>
|
||||
|
||||
Reference in New Issue
Block a user