summaryrefslogtreecommitdiff
path: root/modules/comment/views/admin_comments.html.php
diff options
context:
space:
mode:
authorTim Almdal <tnalmdal@shaw.ca>2009-07-03 21:44:10 -0700
committerTim Almdal <tnalmdal@shaw.ca>2009-07-03 21:44:10 -0700
commit54ffea24196e8f5d88cf9d8607455f0f6aab305c (patch)
treefc0443ec5b8976d154134f667e21adb80cfea06d /modules/comment/views/admin_comments.html.php
parenta633c134b754305eaa611c5d67af4ca7c79beafe (diff)
Split the clean method into two clean and purify. clean is a light weight
approach using html::specialchars and purify uses HTMLPurifier to intelligently cleanse the output fields. Use purifier for text and title fields where it is likely that a user would enter html to format their data.
Diffstat (limited to 'modules/comment/views/admin_comments.html.php')
-rw-r--r--modules/comment/views/admin_comments.html.php4
1 files changed, 2 insertions, 2 deletions
diff --git a/modules/comment/views/admin_comments.html.php b/modules/comment/views/admin_comments.html.php
index 453cf849..489605d5 100644
--- a/modules/comment/views/admin_comments.html.php
+++ b/modules/comment/views/admin_comments.html.php
@@ -122,7 +122,7 @@
<a href="<?= $item->url() ?>">
<? if ($item->has_thumb()): ?>
<img src="<?= $item->thumb_url() ?>"
- alt="<?= p::clean($item->title) ?>"
+ alt="<?= p::purify($item->title) ?>"
<?= photo::img_dimensions($item->thumb_width, $item->thumb_height, 75) ?>
/>
<? else: ?>
@@ -132,7 +132,7 @@
</div>
</div>
<p><?= gallery::date($comment->created) ?></p>
- <?= p::clean($comment->text) ?>
+ <?= p::purify($comment->text) ?>
</td>
<td>
<ul class="gButtonSetVertical">