diff options
| author | Tim Almdal <tnalmdal@shaw.ca> | 2009-07-03 21:44:10 -0700 | 
|---|---|---|
| committer | Tim Almdal <tnalmdal@shaw.ca> | 2009-07-03 21:44:10 -0700 | 
| commit | 54ffea24196e8f5d88cf9d8607455f0f6aab305c (patch) | |
| tree | fc0443ec5b8976d154134f667e21adb80cfea06d /modules/comment/views/comment.html.php | |
| parent | a633c134b754305eaa611c5d67af4ca7c79beafe (diff) | |
Split the clean method into two clean and purify. clean is a light weight
approach using html::specialchars and purify uses HTMLPurifier to intelligently
cleanse the output fields. Use purifier for text and title fields where it is
likely that a user would enter html to format their data.
Diffstat (limited to 'modules/comment/views/comment.html.php')
| -rw-r--r-- | modules/comment/views/comment.html.php | 2 | 
1 files changed, 1 insertions, 1 deletions
| diff --git a/modules/comment/views/comment.html.php b/modules/comment/views/comment.html.php index 6d2cc592..15121d08 100644 --- a/modules/comment/views/comment.html.php +++ b/modules/comment/views/comment.html.php @@ -13,6 +13,6 @@                  "author_name" => p::clean($comment->author_name()))) ?>    </p>    <div> -    <?= p::clean($comment->text) ?> +    <?= p::purify($comment->text) ?>    </div>  </li> | 
